How to manage downtime of a Splunk while version upgradation activity?
Hi,
The upgrade hardly takes 20-30 mins. So estimate the time based on your Splunk instances in your environment. Try to update all of your single instances first.
License Master
Heavy forwarder
Deployment server
Then go for the Deployer and search heads. At last upgrade the cluster master and Indexers one by one.
If this answer helps you please upvote it.