Back up the Splunk Asset and Risk Intelligence app and KV stores

Note: Splunk Asset and Risk Intelligence is not compatible with Splunk Enterprise 9.1.2 due to known issues SPL-237796, SPL-248319 where search results in "results" have more rows than expected. Upgrade to Splunk Enterprise 9.1.3 to use Splunk Asset and Risk Intelligence.

Backups are optional before upgrading Splunk Asset and Risk Intelligence. To begin the back up process, complete the following steps:

  1. Back up the app.
  2. Back up the KV stores.

Back up the app

You can store a copy of the Splunk Asset and Risk Intelligence app to complete pre-upgrade checks and review any local changes. This step is optional for upgrading Splunk Asset and Risk Intelligence.

To back up the app for an on-premises installation, take a full copy of the application from the /opt/splunk/etc/apps/SplunkAssetRiskIntelligence directory in your Splunk Enterprise installation.

To back up the app for a cloud installation, contact your account manager to receive a copy of the application.