Installation

Migrate Splunk install from Win2003 32b to a new Win2008R2 64b server

juank
Engager

I need to move my Splunk install from one server to another... What's is the procedure to backup the configuration/indexes, etc to restore in the new server...? I can't find any documentation about it.

Thanks!

Tags (2)

Ledio_Ago
Splunk Employee
Splunk Employee

Another idea is to install Splunk fresh in your Win2k8 64bit box. Stop sending data to the 32bit box. Then:

Option 1: Copy folders var and etc from the old box to the new box. Make sure that the file permissions are the same. Hopefully these boxes belong to a DC so that you can login as the same domain user in both boxes when you copy the files over. You also you'll need to copy your splunk license file over to the new box.

Option 2: Setup these two boxes as a distributed Splunk deployment, with two indexers, your old box and the new one. If you make the old box the Search Head, then you'll have old data and configs, plus your new data will be in the new box.

Copying data around it's little tricky with windows, give the file permissions and all.

0 Karma

piebob
Splunk Employee
Splunk Employee

there is documentation on backing up index and configuration data here:

http://www.splunk.com/base/Documentation/latest/Admin/Whatyoucanbackup

as long as both your 32-bit and 64-bit systems are x86, then you should be ok moving your indexed data.

http://www.splunk.com/base/Documentation/latest/Admin/Moveanindex

it would be useful to have a topic that specifically addressed the overall task of moving a Splunk installation from one machine to another, i will make sure that happens.

gkanapathy
Splunk Employee
Splunk Employee
0 Karma
Get Updates on the Splunk Community!

Enterprise Security Content Update (ESCU) | New Releases

In December, the Splunk Threat Research Team had 1 release of new security content via the Enterprise Security ...

Why am I not seeing the finding in Splunk Enterprise Security Analyst Queue?

(This is the first of a series of 2 blogs). Splunk Enterprise Security is a fantastic tool that offers robust ...

Index This | What are the 12 Days of Splunk-mas?

December 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...