What are the best practices of upgrading Splunk enterprise version 6.5.3 to Splunk 7.0.1?


I am upgrading Splunk from version 6.5.3 to Splunk 7.0.1, please suggest any best practices and issues you may have noticed while doing it.

The upgrade process is pretty straightforward, just install 7.0.1 over the current installation. Key aspects here are to back up the current installation before and install the new one from the same service account. Also it would be highly recommended to do such upgrade in test environment first and check your currently installed production apps for good compatibility with the new version.

Some specific links you can visit for this activity:


