After upgrading ES search head, what is the recommended way to upgradeadd-ons on Indexers and forwarders ?
Based onthe docs and current Splunk environment, it seems the ideal option is to u...
Hello All, We are upgrading Splunk Heavy Forwarder from v6.4.0 to v7.3.1.1 and we were evaluating the need to upgradeadd-ons installed onthe HF to ensure compatibility with v7.3.x....
...nd add-ons: I need to update some of them, should I do it before or after theSplunkupgrade? Example: Add-onfor VMware ESXi Logs is now 3.4.2 and needs to be upgraded to 4.0.3 (w...
I need details about what to validate after theupgrade so I know it was successful. How can I tell that everything got upgraded correctly, and that the system is healthy and ready to go?
I need details about what to check before I upgrade so I know if my deployment is ready to upgrade. What do I monitor, and how do I benchmark system health before theupgrade?
...vt_resolve_ad_obj” from “true” to “false”. So once we upgraded, the automatic decoding of SIDs and GUIDs stopped happening. If you are using Splunkfor Enterprise Security or anything else that requires consistent W...
Hi, I'm running Splunk Enterprise v7.0.1 (Indexer) on a separate Linux server with SplunkForwarderson two more Linux servers that are forwarding data to the Indexer. I would l...
...essages “Timelines could not be loaded”. Splunk ES was on 4.5.2 which was working fine onSplunk 7.2.7. Since it looked incompatible, we planned to upgrade it to 6.2.0. Below is the process followed. I...