Installation

Cannot upgrade Splunk 7.x to Splunk 8.x

token2
Path Finder

I'm running into an issue where as a domain admin I cannot upgrade Splunk 7.2.9.1 to Splunk 8.0.3. I was able to upgrade 7.2.9.1 to 7.3.5, but still cannot upgrade from 7.3.5 to 8.0.3. The GUI (Windows) reports back after going through a lot of the steps, "Splunk Enterprise Setup Wizard ended prematurely because of an error. Your system has not been modified..."

Tags (1)
0 Karma
1 Solution

token2
Path Finder

The issue is a bug Splunk is fixing- the authentication.conf needed to be saved as ANSI to allow the upgrade to proceed.

View solution in original post

0 Karma

token2
Path Finder

Windows version is 2016. It goes through all of the motions, and then rolls back the actions.

0 Karma

token2
Path Finder

The issue is a bug Splunk is fixing- the authentication.conf needed to be saved as ANSI to allow the upgrade to proceed.

0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @token2,
what is your Windows version?
Splunk 8.0.3 is certified only on Windows 10, Windows Server 2016, 2019.

Ciao.
Giuseppe

0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @token2,
some additional questions (someone stupid!):

  • is it a stand alone server or a different one?
  • is it installed on a local device or a network device?
  • is there sufficient disk space on the device?
  • are there an antivirus or other security systems?
  • did you tried to stop Splunk before update?

It's a very strange behaviour I didn't reported any situations like this.
probably the easy solution is to open a ticket to Splunk Support.

Ciao.
Giuseppe

0 Karma
Get Updates on the Splunk Community!

Enterprise Security Content Update (ESCU) | New Releases

In December, the Splunk Threat Research Team had 1 release of new security content via the Enterprise Security ...

Why am I not seeing the finding in Splunk Enterprise Security Analyst Queue?

(This is the first of a series of 2 blogs). Splunk Enterprise Security is a fantastic tool that offers robust ...

Index This | What are the 12 Days of Splunk-mas?

December 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...