Hi All,
We have various splunk UFs running on windows ,unix machines . We are planning to upgrade all the versions to latest universal forwarder .
We have versions from : 6.5.0 to 8.2.7 .
Our plan to upgrade to 9.x
Can someone help intermediate versions to upgrade from 6.5.0 to 9.X
Hi @ssuluguri
As per the doc - https://docs.splunk.com/Documentation/VersionCompatibility/current/Matrix/Compatibilitybetweenforwar...
the UF's should be able to upgrade directly from 6x to 9x.
may we know the Splunk indexer version pls, thanks.
EDIT - Pls check this doc: https://docs.splunk.com/Documentation/Splunk/9.0.0/Installation/AboutupgradingREADTHISFIRST
it is suggesting.... "Upgrading a universal forwarder directly to version 9.0 is supported from versions 8.1.x and higher."
So, better you upgrade from 6x to 8.1x and then to 9.0.x, thanks.
We are on splunk platform .
We have server reporting to on prem Deployment servers and outputs configured to send cloud indexers .
Forwarders are not as sensitive to particular upgrade path as "full" Splunk Enterprise instances are. I remember upgrading all the way straight from 7.2 to 9.0.
I'm not sure about as far back as 6.5 but with a reasonable backup of configuration I wouldn't expect many problems.
I don't think fishbucket has been tampered with since the time it was moved from being an index to a local datastore. So I wouldn't expect problems here.