Splunk® App for AWS (Legacy)

Release Notes

Acrobat logo Download manual as PDF


On July 15, 2022, the Splunk App for AWS will reach its end of life (EOL). After this date, Splunk will no longer maintain or develop this product. Splunk App for AWS is used for both IT monitoring and security use cases because it provides dashboards for both ITOps and security teams. The IT monitoring functionality in Splunk App for AWS is migrating to a content pack in Data Integrations called the Content Pack for Amazon Web Services Dashboards and Reports. The security use case functionality in Splunk App for AWS is migrating to the new Splunk App for AWS Security Dashboards. For more about migration options, see this community post.
This documentation does not apply to the most recent version of Splunk® App for AWS (Legacy). For documentation on the most recent version, go to the latest release.
Acrobat logo Download topic as PDF

The Splunk App for AWS Release Notes

New and changed features

The Splunk App for AWS version 5.1.0 has the following new and changed features:

Inputs

  • Data input creation and management capability is completely removed from the Splunk App for AWS. You now must use the Splunk Add-on for AWS to create and configure data inputs for AWS data collection.
  • Version 5.1.0 of Splunk App for AWS is only compatible with Splunk Add-on for AWS 4.4.0. Previous versions of Splunk Add-on for AWS are not supported.

Dashboards

  • The Billing panel is removed from the Overview dashboard.
  • A new Anomaly Detection Overview dashboard is added under the Overview menu. The dashboard displays anomaly trends over time as well as a list of recent anomalies. You can also view and manage all the configured anomaly detection jobs in this dashboard. In previous versions, the anomaly overview information was displayed in the Insights Overview dashboard.
  • The Timeline dashboard now also displays Personal Health and SQS (custom) events in addition to the other AWS services events already supported in previous versions of the Splunk App for AWS. You can now view and filter events associated with the following AWS resources: EC2 instance, Classic Load Balancer, Application Load Balancer, security group, key pair, network ACL, IAM user.
  • A new ELB List panel is added to the ELB Instances dashboard.
  • A new API Gateway dashboard is added under the Usage menu. The dashboard visually displays metrics of APIs managed through your API Gateway.
  • The Reserved Instance Planner dashboard provides two new search filters: Platform and Tenancy.
  • A new panel - RI Utilization by Family in Last Month – is added to the Reserved Instance Inventory dashboard.
  • A new Security Group Insights dashboard is added under the Insights menu. The dashboard displays different severity levels of detected problems with the configuration and usage of security groups in your AWS environment.
  • A new IAM Insights dashboard is added under the Insights menu. The dashboard displays different severity levels of detected problems with IAM authentication setup and management in your AWS environment.
  • The Billing Anomaly Insights dashboard is removed from the Insights menu.
  • The tags filter in dashboards is enhanced to support exclusions (key != value).

Knowledge objects

  • The Detailed Billing and Instance Hour data models have been improved with more accurate search results.

Fixed issues

Date resolved Issue number Description
2017-08-07 AWSAPP-1881 The ELB macro is not compatible with Splunk Add-on for AWS 4.3.0
2017-07-04 AWSAPP-479 The calculation for reserved instance count is incorrect
2017-06-29 AWSAPP-1083 Monthly billing data takes a long time to load when the amount of data is huge
2017-06-18 AWSAPP-916 No suggested value for Billing tags, user can only select "Tagkey is not empty" or input search expressions
2017-06-05 AWSAPP-568 AWS lookups aren't populated when the add-on is on a separate instance than the app.
2017-03-14 AWSAPP-1729 Topology - Playback stopped working due to reaching session storage limits in case of too many changes.
2017-01-23 AWSAPP-921 When user-defined custom tags in AWS are identical to pre-defined filters in the Splunk App for AWS, the Group By filer produces duplicate values

For fixed issues relevant to accounts, input configuration, and knowledge management, see the Fixed issues for the Splunk Add-on for Amazon Web Services.

Known issues

Version 5.1.0 of the Splunk App for AWS does not contain any known issues.

For known issues relevant to accounts, input configuration, and knowledge management, see also Known issues for the Splunk Add-on for Amazon Web Services.

See also

To get started with the app, see the Installation and Configuration Manual.

Last modified on 08 September, 2017
  NEXT
Credits for the Splunk App for AWS

This documentation applies to the following versions of Splunk® App for AWS (Legacy): 5.1.0


Was this documentation topic helpful?


You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters