Migrate from v1.5 to v2
- Run the old and the new Splunk versions in parallel.
-
Search for events from the old version using
source="lookout".
-
Search for events from the new version using
source="lookout_v2".
- Stop using the old version when the new version is functional.