Splunk Enterprise Upgrade from 6.5.0 to Higher Versions

Path Finder

Hi All,

Currently we are running with Splunk 6.5.0 (build 59c8927def0f) in our environment with all the servers ( 1Cluster master, 1 Deployment Master, 8 Indexers, 4 Search Heads) getting hosted in Linux box with their respective version(Linux version 2.6.32-696.10.3.el6.x86_64) .

So we are planning to upgrade our Splunk Enterprise to the latest version . Hence kindly let us know whether we need to upgrade to Splunk 6.6 and then we need to plan for an upgrade to Splunk 7.0 or Splunk 7.1 versions. Or can we directly upgrade our Splunk Enterprise from 6.5.0 to 7.0 or might be 7.1?

Can you kindly let us know which one would be the preferred option or recommended one and also highlight the best practices to achieve the same.

We are also eager to know about the Pros and Cons before performing the Upgrade to the latest version. Also kindly provide the steps to upgrade from Splunk 6.5.0 to latest version.

Tags (1)
0 Karma



upgrade from 6.5 to 7.x is possible. See

"Splunk supports a direct upgrade from versions 6.5 and later of Splunk Enterprise to version 7.1:"

You need to upgrade deploymentserver first, then searchheads, clustermaster and then the indexers.



0 Karma

Path Finder

Can anyone help on my request.

0 Karma
Did you miss .conf21 Virtual?

Good news! The event's keynotes and many of its breakout sessions are now available online, and still totally FREE!