3.0.2
This documentation does not apply to the most recent version of Splunk. Click here for the latest version.
Contents
3.0.2
New features
- Users can now bundle python scripts that can be accessed via the REST API
- SplunkBase 3.0 is now live
- Splunk now runs on AIX
Resolved issues from 3.0.1
- The command
splunk export globaldatano longer results in an exception - Username strings are now properly XML-escaped
- Redefining $SPLUNK_DB will no longer cause events to appear to vanish in SplunkWeb
- Small files are now tailed properly (will not re-read them continuously)
- Added support in the database management system to be able to move data across partitions on WORM devices
- Fixed issue in SplunkWeb dashboard with the Daily index volume displaying incorrectly
- RPM package update from 3.x will no longer remove the local configuration
- Tail processor now supports the option to work as if performing
tail -f - Fixed LDAP crash issue with (> 1000 users for non-AD servers)
- Long saved search names no longer run off the drop-down menu in SplunkWeb
- Deleting events while search is still running no longer causes error in event count
- Fixed bug in admin tab of SplunkWeb with saving searches
- Fixed bug in SplunkWeb when changing sourcetype of TCP input from manual to automatic
- Added support for telling a user what access control limits apply to him/her
- Specifying a time range in SplunkWeb no longer overrides the SplunkWeb controls for timerange
- Added functionality to dashboard panes in SplunkWeb - 'x' in upper right corner of each dashboard pane now causes the pane to be removed permanently
- Alerts now work with saved searches containing less than and greater than symbols ( <, >)
- Fixed issue with source:: not accepting capital letters in paths to extracted fields
- LDAP logins are no longer case-sensitive
- Fixed issue with UDP data inputs where the hostname in an event gets written as garbled text
- Saved searches now display in other user's dashboards when using LDAP
- delete:: on sources no longer causes splunkd to crash
- Using delete:: multiple times on the same source/host/sourcetype no longer creates errors in event counts
- Added support for the CLI command
exportto be able to handle event data - Fixed "Malformed XML or SOAP" exception on License & Usage tab when license exceeded (see Cannot access License & Usage tab for details.)
This documentation applies to the following versions of Splunk: 3.0.2 View the Article History for its revisions.