Splunk crash after upgrade from 6.6.3 to 7.1.4
Splunk Keep crashing. Below is crash log [build 5a7a840afcb3] 2019-02-12 02:31:45 Access violation, cannot read at address [0xFFFFFFFFFFFFFFF0] Exception address: [0x00007FF7B0A544AD] Crashing thread:...
View ArticleWhen upgrading Splunk Enterprise Security from 4.7.x to 5.2.2, should we plan...
Hello, I just wanted a confirmation if the following upgrade paths are supported. My organization plans to do the following: 1. Direct Splunk Core Enterprise upgrade from 6.5.7 to 7.1.6 2. Direct...
View ArticleRestarting a member of a Splunk Indexer Cluster
I have a Splunk deployment with two Splunk Receivers and a cluster master operating together as a indexer cluster. I am looking to do some Windows OS updates to all the machines. In preparation for...
View ArticleUpgrade Splunk 6.6.3 to 7.2.3
I am trying to figure out if I will run into any issues while upgrading our Splunk Enterprise environment from 6.6.3 to 7.2.3. We have a distributed environment that has: • License Master (covers all...
View ArticleCan you give me advice on the correct sequence to follow when upgrading...
We wish to upgrade from 6.5.3 to the latest (7.2.4 at this time). We have: - Index Cluster Master - Search head cluster (3 nodes) - Index Cluster (3 nodes) - Heavy forwarder (1 node) - Configuration...
View ArticleAny known issues when upgrading from 7.0.5 to 7.1.6?
We are planning to upgrade from 7.0.5 to 7.1.6 for our lower environment. Are there any known issues with 7.1.6?
View ArticleSplunk Crashes After Login - After Upgrade to 7.2.5
Hello, Following the upgrade to Splunk 7.2.5 yesterday my Splunk (single instance, Windows) server will not progress after logging in. After entering my credentials and attempting to click on anything...
View ArticleUpgrading Splunk_TA_Windows
We want to upgrade the Splunk_TA_Windows to the most recent version, but realized that it's only supported on versions 6.6+, and lots of our clients use 6.5.4. Has anyone tried upgrading the app on the...
View ArticleCould someone tell me if the upgrade duration depends on the volume of data ?...
Hi Splunkers, I have to upgrade a production environment : - 6.6.1 to 7.2 - Linux - 1 index master, 2 nodes, 1 search-head I first tried to upgrade a test environment (very little data) and the...
View ArticleUpgrade from 7.2.1 to 7.2.3 fails
When I run the installer it fails and rolls back I see errors about MongoDb lockfile 2019-01-14T18:45:28.291Z W - [initandlisten] Detected unclean shutdown - /DB/kvstore/mongo/mongo\mongod.lock is not...
View ArticleUpgraded from Splunk 7.0.3 to 7.2.1 and the Splunk Web Server is unavailable.
Upgraded from Splunk 7.0.3 and 7.2.1 the Splunk Web Server is unavailable. When Splunk is started from the command line, the following output appears on the screen: Waiting for web server at...
View ArticleHow the heavy forwarder and Splunk DB connect work when indexers is stopping...
Hi Splunk Professionals, I am going to upgrade my splunk components. Along with upgradeing, I am wondering what is the best way to prevent from losing the DB log when stopping indexers. My enviroment...
View ArticleUpgrading Splunk Docker Container from 7.0.0 to 7.2.3
In the following article it says that upgrades from sub 7.2.0 containers to 7.2.0+ containers is not supported. https://www.splunk.com/blog/2018/10/24/announcing-splunk-on-docker.html Is there a way to...
View ArticleUpgrade to Splunk 7.2.4 on SUSE Enterprise 15 not working
Hi all, we are trying to upgrade our SPlunk 7.2.3 to splunk 7.2.4 in our distributed envirnoment running on SUSE Enterprise Linux 15 and we are running into following Problem: /var/tmp # rpm -U...
View ArticleUpgrading/Migrating Splunk from 6.0.1 to 7.2.3. Need Help
Hello Splunkers, I need to upgrade my current Splunk multi cluster environment from 6.0.1 to 7.2.3. Present Infrastructure where Splunk 6.0.1 is present:- 1. Two indexers 2. Two search heads(SHP) 3....
View ArticleSplunk Upgrade best methodology or approach for Enterprise and ES
I am looking to upgrade the following and the approach below. My question is this upgrade optimal and will sustain? The storage, ram and cores are way below Splunk recommendation for SH. Will this...
View ArticleAWS MarketPlace SPLUNK instance type upgrade
I created an instance from the marketplace and later decided to change the instance type. When I stopped the instance, I know that AWS will delete the ephemeral storage. I never configured SPLUNK to...
View Articlewhat about the disabled alerts after upgrading to 7.2?
https://docs.splunk.com/Documentation/Splunk/7.2.5/Installation/AboutupgradingREADTHISFIRST says disabled lookups will no longer be available after upgrade. Is it only lookups or everthing disabled. We...
View ArticleUF upgrade compatibility
I need to upgrade a several forwarders that are running older versions such as 4.x and 5.x. to 7.x. Our distributed environment is running at 7.1.4. Do I need to upgrade the UF to 6.5.2 first? Or, can...
View ArticleWhat is the UF upgrade compatibility?
I need to upgrade a several forwarders that are running older versions such as 4.x and 5.x. to 7.x. Our distributed environment is running at 7.1.4. Do I need to upgrade the UF to 6.5.2 first? Or, can...
View Article