Splunk® Enterprise

Release Notes

Acrobat logo Download manual as PDF


Splunk Enterprise version 8.1 will no longer be supported as of April 19, 2023. See the Splunk Software Support Policy for details. For information about upgrading to a supported version, see How to upgrade Splunk Enterprise.
This documentation does not apply to the most recent version of Splunk® Enterprise. For documentation on the most recent version, go to the latest release.
Acrobat logo Download topic as PDF

Fixed issues

Splunk Enterprise 8.1.6 was released on September 9, 2021. This release includes fixes for the following issues.

Issues are listed in all relevant sections. Some issues might appear more than once.

Authentication and authorization issues

Date resolved Issue number Description
2021-08-03 SPL-207019, SPL-196753 Embedding a Splunk dashboard in the customer's Web App using <iframe> failed in Chrome with SameSite error

Search issues

Date resolved Issue number Description
2021-08-24 SPL-207537 Non-admin searches take longer after upgrading SH cluster from 7.3.7 to 8.1.x
2021-08-17 SPL-210070, SPL-209599 Searches with hundreds of search commands can crash the main Splunk server.
2021-06-01 SPL-204793, SPL-205516, SPL-206367 REST API search fails on 8.1.3, completes on 7.2.6

Saved search, alerting, scheduling, and job management issues

Date resolved Issue number Description
2021-08-17 SPL-210128, SPL-209333 Incomplete DMAs: Hot buckets are not fully accelerating. "Tstats summariesonly=f" incomplete
2021-07-21 SPL-207377, SPL-207697, SPL-208513 E-mail-Addresses get moved from TO to BCC in Alert notification
2021-06-30 SPL-207588, SPL-195481, SPL-207587 Users are not able to open 'Advance Edit' feature while editing Alerts

Data model and pivot issues

Date resolved Issue number Description
2021-08-17 SPL-210128, SPL-209333 Incomplete DMAs: Hot buckets are not fully accelerating. "Tstats summariesonly=f" incomplete
2021-07-21 SPL-207377, SPL-207697, SPL-208513 E-mail-Addresses get moved from TO to BCC in Alert notification
2021-06-30 SPL-207588, SPL-195481, SPL-207587 Users are not able to open 'Advance Edit' feature while editing Alerts

Indexer and indexer clustering issues

Date resolved Issue number Description
2021-11-09 SPL-214324, SPL-205462 Indexers running out of space - Splunk not honoring the 'maxVolumeDataSizeMB' setting - 8.2.2
2021-07-15 SPL-205462, SPL-210602, SPL-211950, SPL-214324 Indexers running out of space - Splunk not honoring the 'maxVolumeDataSizeMB' setting
2021-06-29 SPL-205969, SPL-206226, SPL-207672 Linux 8.1.3 IDX clustering on Google Cloud - frequent crashes on CPs with Assertion `_chunk.size() == ((file_offset_t) -1) || n <= (size_t) _chunk.size()' failed.

Universal forwarder issues

Date resolved Issue number Description
2021-06-29 SPL-204906, SPL-207677, SPL-208018 UF has problems recognizing the DST changes

Splunk Web and interface issues

Date resolved Issue number Description
2021-08-03 SPL-207019, SPL-196753 Embedding a Splunk dashboard in the customer's Web App using <iframe> failed in Chrome with SameSite error

Uncategorized issues

Date resolved Issue number Description
2021-08-11 SPL-209801, SPL-194766 SPL-171553, SPL-171647 Smartstore: S3 GET is being done before S3 PUT for the receipt.json causing 404 errors
2021-07-30 SPL-204497, SPL-207696, SPL-209394, SPL-209395 httpout on UF behaves different than tcpout when there is no TZ in the event
2021-07-29 SPL-208355, SPL-208691, SPL-209419 Historic License Usage report showing incorrect data when using "split by" feature
2021-06-29 SPL-206233, SPL-208289, SPL-206946, SPL-207301 Tsidx Reduction creates very large amount of "minify-tsidx fsck" and repeatedly for the same bucket at the same causing large amount of memory usage and OoM in extreme cases
2021-06-29 SPL-204162, SPL-207380, SPL-207438 Splunk diag: ERROR Cannot process directory path in Windows after upgrade to 8.1.2
Last modified on 16 September, 2022
PREVIOUS
Field alias behavior change
  NEXT
Deprecated and removed in version 8.1

This documentation applies to the following versions of Splunk® Enterprise: 8.1.6


Was this documentation topic helpful?


You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters