I have an existing Splunk setup with 2 indexers and 2 forwarders with a clustered architecture. Now we are trying to upgrade and introduce new h/w for syslog and additional forwarders and indexers. What would be the best way to upgrade this environment?