I would like to make sure if the following upgrade path is okay. We have ES 4.5.1 running on Splunk Enterprise 6.5.1 and the below is what I’m thinking.
First, Upgrade to ES 4.7.4
Second. Upgrade to Splunk 7.0
Third. Upgrade to ES 5.0
Joon, your proposed upgrade path looks great. If you can do it all in one maintenance window, what @mdessus suggests should work. If you need to do it progressively over several maintenance windows, follow the steps you outline in your question.