Splunk® Supported Add-ons

Splunk Add-on for Cisco UCS

Acrobat logo Download manual as PDF


Acrobat logo Download topic as PDF

Release notes for the Splunk Add-on for Cisco UCS

Version 3.1.0 of the Splunk Add-on for Ciscos UCS was released on May 8, 2021.

Compatibility

Version 3.1.0 of the Splunk Add-on for Cisco UCS is compatible with the following software, CIM versions, and platforms:

Splunk platform versions 7.2.x, 7.3.x, 8.0.0, 8.1.x
CIM 4.19
Supported OS for data collection Linux and Windows
Vendor products Cisco UCS Manager

This add-on is unrelated to and is not intended to be compatible with the Splunk App for Cisco UCS. If you are currently using the Splunk App for Cisco UCS, disable the data gathering in the Splunk App for Cisco UCS so that the input from the add-on does not conflict with the input from the app.

The field alias functionality is compatible with the current version of this add-on. The current version of this add-on does not support older field alias configurations.

For more information about the field alias configuration change, refer to the Splunk Enterprise Release Notes.

Upgrade

If you added Cisco UCS Managers in previous versions of the Splunk App for Cisco UCS, confirm the type of connection protocol each Manager uses. For protocols other than SSL with a Trusted Certificate, take one of the following two actions:

HTTP Set disable_ssl_verification to true in your cisco_ucs_servers.conf file.
SSL

1. Find your cacerts.txt file at $Splunk_Home/etc/apps/Splunk_TA_Cisco_ucs/bin/ta_util2/httplib2/.
2. Add your certificate details in base-64 encoded format to the cacerts.txt file.

New features

Version 3.1.0 of the Splunk Add-on for Cisco UCS has the following new features:

  • Support for Cisco UCS Manager 4.1.
  • Support for CIM 4.19.
  • CIM data model and extraction changes.
  • Server validation feature while configuring a UCS manager on the configuration page.
  • Removed CIM tags for cisco:ucs:faultInst source and extracted ITSI Fields in support of the Universal Alerting ITSI Content Pack for Monitoring and Alerting in ITSI.
  • Removed CIM tags from these sources:
    • cisco:ucs:etherTxStats
    • cisco:ucs:etherPauseStats
    • cisco:ucs:etherRxStats
    • cisco:ucs:etherErrStats
  • Added a csv lookup ucs_fault_highestSeverity to map fault severity level to the severity id.
  • Updated dest field mapping in majority of the sources.
  • Enhanced CIM mappings and extractions for these eventtypes:
    • cisco_ucs_computeRackUnit
    • cisco_ucs_computeBlade
    • cisco_ucs_storageLocalDisk
    • cisco_ucs_etherPIo
  • Resolved an issue where data collection was not working correctly with a self-signed SSL certificate.
  • Error traceback now prints only after the retry for a failed API call, as opposed to printing error traceback on every failed API call in the data collection.

Fixed issues

Version 3.1.0 of the Splunk Add-on for Cisco UCS fixes the following issues:


Date resolved Issue number Description
2021-04-15 ADDON-24323 Unable to collect data from a Cisco UCS Manager using an SSL connection with a self-signed certificate
2020-09-01 ADDON-27926 Heavy forwarders configured with UCS add-on are getting frequent Traceback for each UCS Manager.

Known issues

Version 3.1.0 of the Splunk Add-on for Cisco UCS contains the following known issues.

If no issues appear, no issues have yet been reported.


Date filed Issue number Description
2021-04-25 ADDON-36170 SSL certificate is not working with python2

Third-party software attributions

Version 3.1.0 of the Splunk Add-on for Cisco UCS incorporates the following third-party software or libraries:

Last modified on 23 July, 2021
 

This documentation applies to the following versions of Splunk® Supported Add-ons: released


Was this documentation topic helpful?


You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters