After the future removal of the classic playbook editor, your existing classic playbooks will continue to run, However, you will no longer be able to visualize or modify existing classic playbooks.
For details, see:
Prepare your Splunk SOAR (On-premises) deployment for upgrade
Before you upgrade , you will need to prepare your instance or your cluster nodes by updating the operating system and any installed installed packages.
The installation TAR file used for upgrades contains all the required dependencies for .
Update the operating system and installed packages
Follow these steps to update the operating system and otherwise prepare your deployment for the upgrade.
For a clustered deployment, prepare cluster nodes in a rolling fashion, one cluster node at a time.
- Log in to the instance's operating system.
- For unprivileged deployments, log in as the user account that runs .
- If you use a warm standby or use ibackup.pyc for backups, you must disable those features before proceeding. If you are not using either of those features, you may skip these sub-steps.
- On a single instance deployment of , disable warm standby. See Upgrade or maintain warm standby instances in Administer .
- If you are using automation to run ibackup.pyc to make backups, cancel backups that could run during your upgrade window. For example, if you have configured a cron job to run ibackup.pyc, disable that cron job.
- Stop all services. For example:
/<$PHANTOM_HOME>/bin/stop_phantom.sh
- Clear the YUM caches. As the root user:
yum clean all
- Update the installed software packages and apply operating system patches. As the root user:
yum update
- Restart the operating system. As the root user:
reboot
- After the system restarts, log in to the operating system as either the root user or a user with sudo privileges.
- The install script requires the ability to create jobs in cron. See System requirements for production use. Check that the cron daemon is running.
ps -ef | grep crond
- If the cron daemon is not running, start it.
systemctl start crond.service
- If the cron daemon is not running, start it.
Upgrade path for Splunk SOAR (On-premises) unprivileged installations | Convert a privileged deployment to an unprivileged deployment |
This documentation applies to the following versions of Splunk® SOAR (On-premises): 5.4.0
Feedback submitted, thanks!