We are planning to move our Splunk infrastructure from Windows to Linux.
We have 1 search head and 2 indexers in production (and one indexer each in QA and PERF).
I am planning to just introduce a linux search head, migrate all the applications/saved queries and expect it to work without any problems.
For the indexer, I would like to migrate the data on one of the windows server to a linux server.
Existing Windows indexer: Microsoft Windows Server 2003 R2, Standard x64 Edition, Service Pack 2, running on VMWare host.
Proposed Unix indexer: Ubuntu 10.04, 64 bit.
We originally had Splunk 4.0.* on the Windows box, and then upgraded a few months back to 4.2. This is the 64 bit version of Splunk.
Was able to do the migration