Splunk® Enterprise

Release Notes

Splunk Enterprise version 8.0 is no longer supported as of October 22, 2021. See the Splunk Software Support Policy for details. For information about upgrading to a supported version, see How to upgrade Splunk Enterprise.
This documentation does not apply to the most recent version of Splunk® Enterprise. For documentation on the most recent version, go to the latest release.

Fixed issues

Splunk Enterprise 8.0.5.1

Splunk Enterprise 8.0.5.1 was released on August 31, 2020. This release fixes the following issue:

Date resolved Issue number Description
2020-08-09 SPL-193332, SPL-194209, SPL-194243, SPL-194257, SPL-194326, SPL-194252, SPL-193497, SPL-194202 After upgrade to version 8.0.5, the splunk user needs the "admin_all_objects" capability to send email alert.

Splunk Enterprise 8.0.5

Splunk Enterprise 8.0.5 was released on July 9, 2020. This release includes fixes for the following issues.

Issues are listed in all relevant sections. Some issues might appear more than once. To check for additional security issues related to this release, visit the Splunk Security Portal.

Authentication and authorization issues

Date resolved Issue number Description
2020-05-15 SPL-188696, SPL-185854 Scheduled Searches with Custom triggers on SAML causing user="nobody" had no roles

Search issues

Date resolved Issue number Description
2020-06-18 SPL-189542, SPL-185657 bin command does not work correctly
2020-06-12 SPL-189447 Inconsistent search results when searching data from a renamed sourcetype.
2020-06-09 SPL-180256, SPL-189830, SPL-180411, SPL-181700, SPL-190537 fields extracted with modular regex show incomplete required fields list in smartmode for transforming or non-streaming commands , producing no results found
2020-06-04 SPL-189147, SPL-186735 Renaming sourcetypes on search time causing performance impact
2020-05-29 SPL-185099, SPL-188339 Datamodel summaries contain wrong addresses for multi-value fields causing errors: Failed to read size=XX events from rawdata. Rawdata may be corrupted
2020-05-29 SPL-188941, SPL-180672 Join command with one or more field(s) not in common between search results set returns nonzero events
2020-05-08 SPL-188691, SPL-182532 Splunk does not return any search result when using "earliest and latest" clause
2020-05-06 SPL-188631, SPL-184072 Alert PDF Email has timezone mismatch
2020-05-06 SPL-186655, SPL-188327 Search SPL unexpectedly breaks a field with spaces on the left hand side in the reverse lookup into separate tokens

Saved search, alerting, scheduling, and job management issues

Date resolved Issue number Description
2020-06-16 SPL-189917 Alerts not working when special characters are used in trigger conditions
2020-05-06 SPL-188631, SPL-184072 Alert PDF Email has timezone mismatch

Charting, reporting, and visualization issues

Date resolved Issue number Description
2021-07-29 SPL-189108, SPL-185606 Custom VIZ data chunking, one chunk of previous search is sent when previous search is interupted
2020-05-26 SPL-189778, SPL-186300 Single-Value visualization Viz w/ Trellis clipping text

Indexer and indexer clustering issues

Date resolved Issue number Description
2020-06-23 SPL-189080, SPL-184341 S2 Smartstore :Indexer cluster not recovering when decommissioning indexers greater than or equal to SF/RF

Distributed search and search head clustering issues

Date resolved Issue number Description
2020-06-03 SPL-189811, SPL-188575 SHC scheduled dispatched the same scheduled-indextime-rt search 3 times - impact on ITSI
2020-05-27 SPL-188977, SPL-186803 One SHC member has stuck at Restarting during rolling restart
2020-05-25 SPL-188709, SPL-182150 Authentication.conf replicating empty stanza header multiple times per minute
2020-05-15 SPL-188937, SPL-185709 Getting incorrect no.of instances in the Kvstore Average latency graph in ES SHC

Universal forwarder issues

Date resolved Issue number Description
2020-05-07 SPL-188622, SPL-184263 UFs stop forwarding after some time due to deadlock between HealthReporter threads

Splunk Web and interface issues

Date resolved Issue number Description
2020-06-22 SPL-189167, SPL-186637 Show Source will not display more than 1000 lines

Windows-specific issues

Date resolved Issue number Description
2020-04-30 SPL-188518, SPL-167767 perfmon: useEnglishOnly set to true has no effect

Uncategorized issues

Date resolved Issue number Description
2020-06-23 SPL-190313, SPL-183454 slash character present in sourcetype prevents editing of Field Extractions
2020-06-22 SPL-190922, SPL-184176 S2: missing cachemanager_local.json for local bucket - could lead to unaccounted for disk consumption
2020-05-19 SPL-177999, SPL-175298 license_warnings_update_interval default value is less than minimum permitted threshold 10
2020-05-19 SPL-188961, SPL-189148 Splunk app UI home page is not loading due to failure of JavaScript file (internal server error)
Last modified on 29 July, 2021
Timestamp recognition of dates with two-digit years fails beginning January 1, 2020   Deprecated and removed in version 8.0

This documentation applies to the following versions of Splunk® Enterprise: 8.0.5


Was this topic useful?







You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters