Splunk Enterprise Security

Upgrading Splunk Enterprise Security fails on enabling / disabling add-ons - Solution

domenico_perre
Path Finder

Hi All,

I am just posting a solution to an issue I have had with two upgrades for Splunk Enterprise Security. First issue was when upgrading From 3.3 -> 4.0 and now 4.0 -> 4.1.

Linux Example:

  1. Copy your install (can be left as tgz file) to an accessible location. /tmp/esinstall/splunk-enterprise-security_410.tgz
  2. Open up a terminal console and change to your $SPLUNKHOME\bin directory.
  3. Issue the following command ./splunk install app /tmp/einstall/splunk-enterprise-security_410.tgz -update 1

Windows Example:

  1. Copy your install (can be left as tgz file) to an accessible location. C:\SplunkUpgrade\splunk-enterprise-security_410.tgz
  2. Open a powershell prompt and change to your $SPLUNKHOME\bin directory.
  3. Issue the following command .\splunk.exe install app C:\SplunkUpgrade\splunk-enterprise-security_410.tgz -update 1

Then open your ES install and follow the prompts and it will work :).

0 Karma
1 Solution

domenico_perre
Path Finder

domenico_perre
Path Finder

Answer above.

Get Updates on the Splunk Community!

AI for AppInspect

We’re excited to announce two new updates to AppInspect designed to save you time and make the app approval ...

App Platform's 2025 Year in Review: A Year of Innovation, Growth, and Community

As we step into 2026, it’s the perfect moment to reflect on what an extraordinary year 2025 was for the Splunk ...

Operationalizing Entity Risk Score with Enterprise Security 8.3+

Overview Enterprise Security 8.3 introduces a powerful new feature called “Entity Risk Scoring” (ERS) for ...