Is anyone here can share the best practice on how to migrate Splunk enterprise to new hardware? my system include:
2 deployment servers (one for each zone)
4 HFs (two for each zone)
1 cluster master
7 indexers
3 SHs
I am advised to copy entire /etc directory from old to new systems (except indexers), but I am wondering which files I need to reconfigure as servers come with new hostnames and IPs.
Thanks,
↧