Getting Data In

What order should I upgrade in? (4.2)

bfaber
Communicator

I have indexers, search heads, and forwarders that I want to upgrade to 4.2. Is there a suggested order in doing such things? I was thinking: 1) indexers 2) search heads 3) forwarders.

Is this logical?

1 Solution

ftk
Motivator

Your order sounds good to me.

View solution in original post

ftk
Motivator

Your order sounds good to me.

sloshburch
Ultra Champion

@jmulcaster_splunk posted an order-of-operations diagram with links to relevant documentation to help with upgrade planning. Check it out and let us know if you find it helpful. What's the order of operations for upgrading Splunk Enterprise?

0 Karma
Get Updates on the Splunk Community!

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI!Discover how Splunk’s agentic AI ...

Splunk Enterprise Security 8.x: The Essential Upgrade for Threat Detection, ...

Watch On Demand the Tech Talk on November 6 at 11AM PT, and empower your SOC to reach new heights! Duration: ...

Splunk Observability as Code: From Zero to Dashboard

For the details on what Self-Service Observability and Observability as Code is, we have some awesome content ...