Splunk® DB Connect

Deploy and Use Splunk DB Connect

Installation and setup overview

Follow this overview to install and set up Splunk DB Connect.


To deploy Splunk DB Connect on either a single instance of Splunk Enterprise or on a search head in a distributed deployment, you must meet the system requirements.

After meeting the system requirements, start the DB Connect installation process:

  1. Download and install the DB Connect app.
  2. Install a JDBC driver for your database. See Install database drivers.
  3. After installing DB Connect and restarting Splunk Enterprise, launch DB Connect.
  4. Create a database identity and set up a database connection.
  5. Create a new database input and use the data input in a search.

For distributed deployments, follow these additional instructions for deploying the distributed deployment.

Upgrade an existing DB Connect deployment

In Splunk Web, select Update and follow the guided setup to upgrade your DB Connect. You can also download the package manually and install DB Connect.

Keep in mind the following known limitations on upgrading DB Connect before upgrading:

  1. If you are running DB Connect on Windows and want to upgrade, follow these steps:
    1. In Splunk Web, select Apps > Manage Apps.
    2. On the Apps page, navigate to Splunk DB Connect, and select Disable.
    3. Upgrade DB Connect and restart the Splunk platform.
    4. On the home page, select Apps > Manage Apps.
    5. On the Apps page, navigate to Splunk DB Connect, and select Enable.
  2. If you are using DB Connect 2 and want to upgrade to DB Connect 3, see Migrate DB Connect deployment to DB Connect 3.
  3. To migrate DB Connect in the Splunk Cloud , contact Splunk Support. Do not upgrade from previous versions yourself. Splunk Support must migrate the configuration files on your Splunk Cloud Platform instance.
Last modified on 20 February, 2024
Developer Guide   Upgrade and downgrade Splunk DB Connect

This documentation applies to the following versions of Splunk® DB Connect: 3.16.0, 3.17.0, 3.17.1, 3.17.2

Was this topic useful?

You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters