We have two index servers and one search head. What would be the correct order to upgrade these splunk servers to version 4.3.1 (they are currently running 4.3)?
Thanks in advance
first the search head, then the indexers. this documentation topic gives a detailed procedure:
View solution in original post