Hi @mshakeb , if you haven't an Indexer Cluster, you have to: identify all the indexes.conf files that contain the indexes information, stop Splunk, manually modify the conf file $SPLUNK_HOME/et...
See more...
Hi @mshakeb , if you haven't an Indexer Cluster, you have to: identify all the indexes.conf files that contain the indexes information, stop Splunk, manually modify the conf file $SPLUNK_HOME/etc/splunk-launch.conf replacing the $SPLUNK_DB value with the new value, check if in the above indexes.conf files there's some location that don't use $SPLUNK_DB, if there's, change the location to the new one, manually move the folders from the old location to the new one, restart Splunk. For more infos, you can see at https://docs.splunk.com/Documentation/Splunk/9.2.1/Indexer/Moveanindex Ciao. Giuseppe