Installation

What is the correct order to upgrade Splunk Enterprise and Apps/Add-ons?

scottrunyon
Contributor

I am preparing to upgrade Splunk Enterprise from 6.5.0 to 6.5.1. There are several Apps and Add-ons that have upgrades as well.

These include Splunk Common Information Model (CIM), Splunk App for Windows Infrastructure and Splunk Enterprise Security.

My question is, what is the correct order to do these upgrades?

Do I update Splunk Enterprise first and then the Apps or do the Apps first?

Labels (2)
0 Karma
1 Solution

gcusello
SplunkTrust
SplunkTrust

Hi scottrunyon,
Upgrade before Splunk Enterprise and then Apps.
Beware to the order of connected apps (e.g.: TAs and Apps): maintain the order described in the documentation (e.g.: if you have to install a TA before the corresponding App, maintain this order!).
See http://docs.splunk.com/Documentation/Splunk/6.5.1/Installation/HowtoupgradeSplunk
Bye.
Giuseppe

View solution in original post

gcusello
SplunkTrust
SplunkTrust

Hi scottrunyon,
Upgrade before Splunk Enterprise and then Apps.
Beware to the order of connected apps (e.g.: TAs and Apps): maintain the order described in the documentation (e.g.: if you have to install a TA before the corresponding App, maintain this order!).
See http://docs.splunk.com/Documentation/Splunk/6.5.1/Installation/HowtoupgradeSplunk
Bye.
Giuseppe

jmulcaster_splu
Splunk Employee
Splunk Employee

We just posted an order-of-operations diagram with links to relevant documentation to help with upgrade planning. Check it out and let us know if you find it helpful. What's the order of operations for upgrading Splunk Enterprise?

0 Karma
Get Updates on the Splunk Community!

Stay Connected: Your Guide to May Tech Talks, Office Hours, and Webinars!

Take a look below to explore our upcoming Community Office Hours, Tech Talks, and Webinars this month. This ...

They're back! Join the SplunkTrust and MVP at .conf24

With our highly anticipated annual conference, .conf, comes the fez-wearers you can trust! The SplunkTrust, as ...

Enterprise Security Content Update (ESCU) | New Releases

Last month, the Splunk Threat Research Team had two releases of new security content via the Enterprise ...