Indexer Cluster Rolling Upgrade and Long-Running Search Continuity
Rolling Upgrade Behavior Splunk indexer clusters support rolling upgrades to maintain availability by taking individual nodes offline sequentially. While this process ensures the cluster remains operational for new data ingestion and new search requests, the impact on active, long-running search jobs is not fully defined across different versions. Search Job