Go Premium for a chance to win a PS4. Enter to Win

x
?
Solved

Migration Splunk

Posted on 2016-09-15
3
Medium Priority
?
73 Views
Last Modified: 2016-10-04
Hi evryone,
I want to ask if someone had migrated SPLUNK version 6.3.1 to splunk 6.4
What is impact of migration and you had any probleme after migration
Thank you for Advance
0
Comment
Question by:Alain VOUCHE
  • 2
3 Comments
 
LVL 65

Accepted Solution

by:
btan earned 2000 total points (awarded by participants)
ID: 41799948
Good to run through ReadMe though not many will do. Below are some key one that I see of interest
Not all Splunk apps and add-ons are compatible with Splunk Enterprise 6.4.

When you upgrade to version 6.4 of Splunk Enterprise, the software generates checksums for data model and report acceleration summaries as part of the migration. Migration time might increase significantly if there are a large number of data model or report acceleration summaries

The working directory for the inputcsv, outputcsv, and streamedcsv search commands has changed

For all versions of Splunk Enterprise, the number of source types that an instance can learn in the process of monitoring and indexing files has been limited.

Splunk Enterprise now identifies search commands that could negatively impact performance

Splunk Enterprise installs and runs two new services: App Key Value Store and App Server. This opens two network ports by default on the local machine: 8065 (for Appserver) and 8191 (for App Key Value Store.) Make sure any firewall you run on the machine does not block these ports.

Splunk has ended support for Splunk Web for Internet Explorer versions 9 and 10

There is no supported upgrade path from a Splunk Enterprise system with enabled Secure Sockets Layer (SSL) certificates to a system with FIPS enabled. If you need to enable FIPS, you must do so on a new installation.
http://docs.splunk.com/Documentation/Splunk/6.4.3/ReleaseNotes/MeetSplunk#Planning_to_upgrade_from_an_earlier_version.3F

Do also look out for the deprecated and removed features. Splunk does not provide a means of downgrading to previous versions. So do backup and  recover if required to rollback otherwise you must uninstall the upgraded version and then reinstall the previous version of Splunk Enterprise that you were using.
1
 

Author Comment

by:Alain VOUCHE
ID: 41800012
thank you btan
0
 
LVL 65

Expert Comment

by:btan
ID: 41827722
As per advice given.
0

Featured Post

Get Certified for a Job in Cybersecurity

Want an exciting career in an emerging field? Earn your MS in Cybersecurity and get certified in ethical hacking or computer forensic investigation. WGU’s MSCSIA degree program was designed to meet the most recent U.S. Department of Homeland Security (DHS) and NSA guidelines.  

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Phishing emails are a popular malware delivery vehicle for attack.  While there are many ways for an attacker to increase the chances of success for their phishing emails, one of the most effective methods involves spoofing the message to appear to …
Your business may be under attack from a silent enemy that is hard to detect. It works stealthily in the shadows to access and exploit your critical business information, sensitive confidential data and intellectual property, for commercial gain. T…
Email security requires an ever evolving service that stays up to date with counter-evolving threats. The Email Laundry perform Research and Development to ensure their email security service evolves faster than cyber criminals. We apply our Threat…
There's a multitude of different network monitoring solutions out there, and you're probably wondering what makes NetCrunch so special. It's completely agentless, but does let you create an agent, if you desire. It offers powerful scalability …

824 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question