We are running a distributed clustered Splunk system on version 6.2
we are planning to upgrade to 6.3 due to definitive requirements.
As part of the upgrade instructions, it is mentioned to take backup of files/indexed data and configuration
we could not get any instructions on how to backup and restore the indexed data?
we are running on Unix environment and have large data coming in (in TB) daily.
any instructions on how to backup and then restore after upgrade?
Also the instructions say all Indexer peers should be stopped..we are skeptical about this, since it will lead to loss of data. any other alternative?
↧