Splunk® Enterprise

Release Notes

Splunk Enterprise version 8.1 will no longer be supported as of April 19, 2023. See the Splunk Software Support Policy for details. For information about upgrading to a supported version, see How to upgrade Splunk Enterprise.
This documentation does not apply to the most recent version of Splunk® Enterprise. For documentation on the most recent version, go to the latest release.

Fixed issues

Splunk Enterprise 8.1.11 was released on August 16, 2022. This release includes fixes for the following issues.

Issues are listed in all relevant sections. Some issues might appear more than once.

Authentication and authorization issues

Date resolved Issue number Description
2022-10-13 SPL-223997, SPL-224644, SPL-224646, SPL-224645 Unnecessary ERROR AuthenticationManagerSplunk message when deleting users
2022-06-08 SPL-225424 Unnecessary ERROR AuthenticationManagerSplunk message when deleting users

Search issues

Date resolved Issue number Description
2022-05-31 SPL-224870, SPL-224680 Remote search process on indexers randomly crash on RunDispatch thread
2022-04-18 SPL-222407, SPL-221578 crashing thread: StatusEnforcerThread after upgrading Splunk
2022-04-05 SPL-221621, SPL-213464 Suspected High CPU usage after customer test instances upgrade

Saved search, alerting, scheduling, and job management issues

Date resolved Issue number Description
2022-05-24 SPL-224509, SPL-224397 Scheduled alerts with custom actions containing subsearches generate all-time `subsearch_AlertActionsRequredFields` searches, block the scheduler.

Distributed search and search head clustering issues

Date resolved Issue number Description
2022-04-18 SPL-222407, SPL-221578 crashing thread: StatusEnforcerThread after upgrading Splunk

Universal forwarder issues

Date resolved Issue number Description
2022-03-28 SPL-221322, SPL-212687 'MS Defender' Windows Event Logs stop sending several times a day. System logs still send

Splunk Web and interface issues

Date resolved Issue number Description
2021-08-31 SPL-207573 The "../" characters are removed from the search string when used through Splunk Web UI.

Windows-specific issues

Date resolved Issue number Description
2022-05-29 SPL-224531, SPL-223501 Splunk UF stops forwarding Windows Security events when Windows event log service is restarted
2022-03-28 SPL-221322, SPL-212687 'MS Defender' Windows Event Logs stop sending several times a day. System logs still send
Last modified on 14 October, 2022
Field alias behavior change   Deprecated and removed in version 8.1

This documentation applies to the following versions of Splunk® Enterprise: 8.1.11


Was this topic useful?







You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters