Installation

is it possible to upgrading to lower versions during roll back? if not possible kindly help me for step by step procedure for rollback.

shivanandbm
Explorer

is it possible to upgrading to lower versions during roll back? if not possible kindly help me for step by step procedure for rollback.

Tags (1)
0 Karma
1 Solution

javiergn
Super Champion

Hi,

You can normally downgrade by simply running untar of an older version on top of a stopped splunk directory.
Take a backup first of course.

Then start splunk.

See the following links in case it helps as this has been discussed before:

https://answers.splunk.com/answers/610290/downgrade-splunk-from-701-to-652.html
https://answers.splunk.com/answers/232223/is-there-a-command-to-downgrade-from-splunk-versio.html

Thanks,
J

View solution in original post

0 Karma

javiergn
Super Champion

Hi,

You can normally downgrade by simply running untar of an older version on top of a stopped splunk directory.
Take a backup first of course.

Then start splunk.

See the following links in case it helps as this has been discussed before:

https://answers.splunk.com/answers/610290/downgrade-splunk-from-701-to-652.html
https://answers.splunk.com/answers/232223/is-there-a-command-to-downgrade-from-splunk-versio.html

Thanks,
J

0 Karma

shivanandbm
Explorer

Thanks for you suggestion. i am bit confused i have red that splunk does not provide a means of downgrading to previous version . i tride with rpm it was not allowing me to install. please help me for downloading

rpm -Uvh splunk-7.0.3-fa31da744b51-linux-2.6-x86_64.rpm
Preparing... ########################################### [100%]
package splunk-7.1.0-2e75b3406c5b.x86_64 (which is newer than splunk-7.0.3-fa31da744b51.x86_64) is already installed

0 Karma

javiergn
Super Champion

Have you tried with:

rpm -Uvh --oldpackage splunk-7.0.3-fa31da744b51-linux-2.6-x86_64.rpm

highsplunker
Contributor

Works perfectly, thanks a lot

0 Karma

shivanandbm
Explorer

Thanks Mr J.It helps alot.

Get Updates on the Splunk Community!

Enterprise Security Content Update (ESCU) | New Releases

In December, the Splunk Threat Research Team had 1 release of new security content via the Enterprise Security ...

Why am I not seeing the finding in Splunk Enterprise Security Analyst Queue?

(This is the first of a series of 2 blogs). Splunk Enterprise Security is a fantastic tool that offers robust ...

Index This | What are the 12 Days of Splunk-mas?

December 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...