Hi! I am looking to upgrade Splunk Enterprise from 5.0.2 to 5.0.3 using the .rpm file on a Centos 6.4 machine. Is there a process for that, or will rpm -Uvh do the trick? I don't want to lose data, of course. And I don't want to lose my config settings if at all possible.
just follow the docs http://docs.splunk.com/Documentation/Splunk/5.0.3/installation/Upgradeto5.0onUNIX and you should not get in trouble. Did a .dep package update this morning without any trouble or loosing any data / configs.