I have Splunk Search Head version 6.5.2 with ES 4.5.2.
I am planning to install Indexers of 7.3.x version. My plan is to eventually upgrade Splunk Search Head as well, however, first I would like to check compatibility between Search Head and Indexer.
I have searched alot but haven't found any documentation for this.
Please advise.
It's all in the docs. 😉
"While there is some range in compatibility between various Splunk software components, they work best when they are all at a specific version."
Source:
https://docs.splunk.com/Documentation/Splunk/7.3.2/DistSearch/Distsearchsystemrequirements
"The search head must be at the same or a higher level than the search peers."
Source:
https://docs.splunk.com/Documentation/Splunk/7.3.2/Installation/UpgradeyourdistributedSplunkEnterpri...
If your indexer tier is clustered check this:
https://docs.splunk.com/Documentation/Splunk/7.3.2/Indexer/Systemrequirements#Splunk_Enterprise_vers...
Also, don't forget to check compatibility between you SHs and ES.
It's all in the docs. 😉
"While there is some range in compatibility between various Splunk software components, they work best when they are all at a specific version."
Source:
https://docs.splunk.com/Documentation/Splunk/7.3.2/DistSearch/Distsearchsystemrequirements
"The search head must be at the same or a higher level than the search peers."
Source:
https://docs.splunk.com/Documentation/Splunk/7.3.2/Installation/UpgradeyourdistributedSplunkEnterpri...
If your indexer tier is clustered check this:
https://docs.splunk.com/Documentation/Splunk/7.3.2/Indexer/Systemrequirements#Splunk_Enterprise_vers...
Also, don't forget to check compatibility between you SHs and ES.
Thanks I have checked that.