When upgrading from 6.4.0 to 6.5.0, why do I get error "rmdir: failed to...
When upgrading from Splunk 6.4.0 to 6.5.0, I am getting below error: $sudo rpm -U /tmp/splunk-6.5.0-59c8927def0f-linux-2.6-x86_64.rpm warning: /tmp/splunk-6.5.0-59c8927def0f-linux-2.6-x86_64.rpm:...
View ArticleAfter upgrading to 6.5.0 on Windows, I receive error 1607 when restarting...
Dear all, I tried to upgrade Splunk from 6.1.1 to 6.5 but I'm having some issues. The first time, there is an error during installation and it caused splunkd to disappeared in service manager. After...
View ArticleIs there a checklist for upgrading Splunk?
Does anyone have a checklist (or know a link for one) for upgrading Splunk, more specifically post-validation checks?
View ArticleAny recommendations on what order to upgrade my Splunk Instances from 6.4.0...
Any recommendations on what order and how to upgrade the instances from 6.4.0 to 6.4.4. I currently have the following instances: 1 Deployment Server 1 Cluster Master (Also the license Master) 4...
View ArticleCan I manualy create "_telemetry" index on older version indexer
My indexers are 6.2.3 I upgraded one of my searchheads to 6.5.1 to test my apps and it is trying to put data in the _telemetry index Can i just create the index on my 6.2.3 indexers? Will this cause...
View ArticleErrors encountered while upgrading Splunk version to 6.5
Hi all, Recently, I've been tasked to upgrade 2 different Splunk systems (1 server each), version 6.1.7 and version 6.3.8, to version 6.5.0. Both existing systems run on Windows Server 2012 with no...
View ArticleWill I be able to upgrade indexers in a cluster without any downtime?
All, A bit concern for us lately is Splunk downtime. Search head clustering has been helpful, so now we're looking at the indexing tier.. Per my reading here:...
View ArticleI received a new release available notification on my search head. Where does...
Hello, When connecting to my search head, I got a notification about a new release being available. However my search head is already up to date, same for my indexer. I have a few additional Splunk...
View ArticleWhat are the steps to upgrade from Splunk 6.5.0 to 6.5.1?
We are upgrading Splunk Enterprise from 6.5.0 to 6.5.1. What are the steps?
View ArticleIs it appropriate to take VM snapshots prior to upgrading Splunk Deployment...
Hello all. Apologies in advance if the answer to these questions are documented elsewhere, but I've not been able to find any direct answers so far. I am about to upgrade our Deployment Server and...
View ArticleCan I upgrade to 6.5.x with an older Enterprise pre-6.5.0 license?
Hi, is it possible to upgrade from 6.4.x zo 6.5.x with an older Enterprise pre-6.5.0 license or do I need to get an no-enforcement license first?
View ArticleLicensed Splunk Enterprise 6.5.0: How do I prevent "New maintenance" and "New...
I believe i'm on the most current version, I'm not clear on why I am getting these messages.. When I click on the links, it takes me to the general products screen of Splunk. When I clear the messages,...
View ArticleHow can I track future Splunk version updates before they are released?
I want to be able to track future Splunk versions, such as the current version 6.5.1 before they are released. I am unable to find documentation on the website that tracks future Splunk releases (like...
View ArticleWhat is the correct order to upgrade Splunk Enterprise and Apps/Add-ons?
I am preparing to upgrade Splunk Enterprise from 6.5.0 to 6.5.1. There are several Apps and Add-ons that have upgrades as well. These include Splunk Common Information Model (CIM), Splunk App for...
View ArticleCan we upgrade Splunk 6.0.3 directly to latest Splunk version 6.5 in a...
HI All, We are planning to upgrade Splunk 6.0.3 version directly to latest Splunk version 6.5 in distributed environment with shared pooling configuration OR do we need to upgrade to 6.0.3 to 6.3 then...
View ArticleHow can I update Splunk Enterprise 6.4.5 to 6.5 if SSLEAY32.dll is missing?
I try to update my Splunk Enterprise instance from 6.4.5 to 6.5 version, but in the installation process it appears this error: The program can not start because SSLEAY32.dll is missing from your...
View ArticleDifference between Splunk Maintenance Mode vs Splunk Offline mode?
We are trying to upgrade couple of indexers from our multi site cluster to a better hardware (16 core to 24 core etc). We decided to simply swap the disk to the new boxes to avoid unnecessary fix-up...
View ArticleCan we upgrade a search head from version 6.1 to 6.5 while indexers still use...
Hi, Can we upgrade SH version of 6.1.2 to 6.5 while we are planning to continue other components (Indexer,Deployer) still on 6.1.2 versions? I am looking at documentation, but didn't find a solution...
View ArticleHow to upgrade a Splunk search head and indexer cluster from 6.3.2 to 6.5.1?
Hi We are doing upgrade from 6.3.2 to 6.5.1. We have a search head cluster and indexer cluster in our Splunk setup. In doc http://docs.splunk.com/Documentation/Splunk/6.5.1/Indexer/Upgradeacluster...
View ArticleWhy does the upgrade to 6.5.1 touch SPLUNK_HOME/etc/system/local?
We went through an upgrade to 6.5.1 and the upgrade touched `SPLUNK_HOME/etc/system/local` on the indexers. Should it happen? We see `indexes.conf` with a new timestamp.
View Article