Splunk Enterprise

Upgrade Splunk Universal forwarder version from 8.1 to 9.0 directly?


Hi Team,


We are now migrated to Splunk cloud platform version 9.0.x and the logs we are collecting from different log sources by installing Splunk components (universal forwarders) which is with the version 8.1. Now, due to vulnerability report we would like to upgrade Splunk Universal Forwarder version to 9.0.x or 9.4.x. Could you please confirm whether can we perform such upgradation directly from 8.1 to 9.4.x directly? or will it have any impacts? if yes, please let us know what are pre-requisites needs to be looked into? and also let us know the steps/procedures as well. 

Thank you!!

Labels (1)
0 Karma



upgrade compatibility matrix can found from splunk docs side. Those are telling that you can do direct upgrade from 8.1.x to 9.0.5 (latest).


r. Ismo


Thank you @isoutamo 

0 Karma
Get Updates on the Splunk Community!

Observability | How to Think About Instrumentation Overhead (White Paper)

Novice observability practitioners are often overly obsessed with performance. They might approach ...

Cloud Platform | Get Resiliency in the Cloud Event (Register Now!)

IDC Report: Enterprises Gain Higher Efficiency and Resiliency With Migration to Cloud  Today many enterprises ...

The Great Resilience Quest: 10th Leaderboard Update

The tenth leaderboard update (11.23-12.05) for The Great Resilience Quest is out >> As our brave ...