Installation

User configuration copy 4.1 ==> 4.3

echalex
Builder

Hi,
We're about to move our Splunk infrastructure from an environment on 4.1 to 4.3. I'm wondering if I can just copy the directories in etc/users to the new search head, in order to have retain all scheduled searches and alerts. Indeed, I probably need to copy stuff under etc/apps as well.

Any pointers are appreciated.

0 Karma
1 Solution

Drainy
Champion

In some version changes Splunk does some migration tasks which updates some config details and changes some bucket structures.
The safest way to do what you want would be to perform an upgrade of your existing infrastructure to the latest version and then to copy the config files over to ensure complete compatibility.
Also make sure you read the known issues as I believe there may be one or two known issues with a 4.1 to 4.3. I believe although I haven't had a look, that the advised route is a 4.1 to 4.2 upgrade and then to 4.3 to avoid any problems.

Best to check the upgrade notes and release notes with both versions to be sure.

View solution in original post

Drainy
Champion

In some version changes Splunk does some migration tasks which updates some config details and changes some bucket structures.
The safest way to do what you want would be to perform an upgrade of your existing infrastructure to the latest version and then to copy the config files over to ensure complete compatibility.
Also make sure you read the known issues as I believe there may be one or two known issues with a 4.1 to 4.3. I believe although I haven't had a look, that the advised route is a 4.1 to 4.2 upgrade and then to 4.3 to avoid any problems.

Best to check the upgrade notes and release notes with both versions to be sure.

RicoSuave
Builder

You shouldn't run into any issues upgrading from this version. I've done this before and just extracting or installing into the same directory and overwriting will do the trick. You might have to add your license back in.

Reference the 4.2.x version of the installation documentation

http://docs.splunk.com/Documentation/Splunk/4.2.1/Installation/Aboutupgradingto4.2READTHISFIRST

Then reference the current version of the docs. As always, make sure you back up first.

0 Karma

echalex
Builder

Thanks, but I'm not about to upgrade an existing server. I'm about to switch to a new infrastructure, which is already installed. I just want to copy the old user confs over to the new server.

0 Karma
Get Updates on the Splunk Community!

Index This | I am a number, but when you add ‘G’ to me, I go away. What number am I?

March 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...

What’s New in Splunk App for PCI Compliance 5.3.1?

The Splunk App for PCI Compliance allows customers to extend the power of their existing Splunk solution with ...

Extending Observability Content to Splunk Cloud

Register to join us !   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to ...