Fixed issues
Splunk Enterprise 8.1.7.2
Splunk Enterprise 8.1.7.2 was released on December 17, 2021. This release includes version 2.16.0 of Apache Log4j to address the issues described in Splunk Security Advisory for Apache Log4j (CVE-2021-44228 and CVE-2021-45046).
Splunk Enterprise 8.1.7.1
Splunk Enterprise 8.1.7.1 was released on December 13, 2021. This release includes version 2.15.0 of Apache Log4j to address the issues described in Splunk Security Advisory for Apache Log4j (CVE-2021-44228 and CVE-2021-45046).
Splunk Enterprise 8.1.7
Splunk Enterprise 8.1.7 was released on November 19, 2021. This release includes fixes for the following issues.
Issues are listed in all relevant sections. Some issues might appear more than once.
Authentication and authorization issues
Date resolved
|
Issue number
|
Description
|
2021-10-07 |
SPL-206833, SPL-213035, SPL-213036, SPL-213029 |
ProxySSO broken on SH cluster after upgrading Splunk from 7.2.5 to 8.0.7. Web browser shows Bad request, HTTP Request was malformed.
|
Data input issues
Date resolved
|
Issue number
|
Description
|
2021-10-28 |
SPL-213416, SPL-209519 |
dedicatedIOthreads is not respected, causing HEC performance problems
|
2021-10-05 |
SPL-213308, SPL-210455 |
Splunk 7.3.4 perfmon input recording impossible values
|
2021-09-17 |
SPL-211741, SPL-210525 |
splunkd crashing - thread: archivereader
|
Search issues
Date resolved
|
Issue number
|
Description
|
2021-10-06 |
SPL-212955, SPL-194650, SPL-213152 |
IDX Crashes : Crashing thread: BucketSummaryActorThread; Signal: Segmentation fault when lookups fail
|
2021-10-06 |
SPL-212946, SPL-211322 |
search for timeformat=%Y-%m-%d returns error message on some instances of Splunk
|
2021-10-05 |
SPL-212343, SPL-209823 |
In 8.2 strftime(_time, "%Ez") returns incorrect output
|
2021-09-17 |
SPL-211743, SPL-209159 |
Search head crash on GenerationGrabberThread
|
2021-08-24 |
SPL-204074, SPL-207747, SPL-210553, SPL-210554 |
ERROR HTTPClient - Should have received at least 3 tokens in status line, while getting response code. Only got 0.
|
Saved search, alerting, scheduling, and job management issues
Date resolved
|
Issue number
|
Description
|
2021-10-28 |
SPL-213899, SPL-208745 |
Linux 7.3.1 SHC - scheduler stops working unexpectedly
|
2021-08-24 |
SPL-204074, SPL-207747, SPL-210553, SPL-210554 |
ERROR HTTPClient - Should have received at least 3 tokens in status line, while getting response code. Only got 0.
|
Charting, reporting, and visualization issues
Date resolved
|
Issue number
|
Description
|
2021-10-26 |
SPL-213952, SPL-209481, SPL-214759 |
Custom VIZ - data chunk duplication and receiving additional chunk
|
Distributed search and search head clustering issues
Date resolved
|
Issue number
|
Description
|
2021-10-25 |
SPL-204230, SPL-206646, SPL-214045, SPL-214046 |
Crashing thread: TcpChannelThread and DispatchReaper Received fatal signal 11 - On Search Head Cluster.
|
Indexer and indexer clustering issues
Date resolved
|
Issue number
|
Description
|
2021-10-28 |
SPL-213902, SPL-206510 |
CM issues fixup tasks for "frozen in cluster" clustered buckets
|
Universal forwarder issues
Date resolved
|
Issue number
|
Description
|
2021-10-19 |
SPL-213083, SPL-213081 |
TcpoutQ full with tcpout sendCookedData=false
|
2021-09-23 |
SPL-210684, SPL-211911, SPL-211912 |
AIX UF not able to ingest json files after upgrade to 8.2.x
|
Monitoring Console issues
Date resolved
|
Issue number
|
Description
|
2021-10-27 |
SPL-213824, SPL-211712 |
DistHealthFetcher appears to be using https even when enableSplunkdSSL is false
|
2021-09-28 |
SPL-212813, SPL-210383 |
Search Head Clustering: Status and Configuration, Snapshots, Search Concurrency (Running Limit), metrics definitions unreadable after upgrade to 8.2.1
|
Splunk Web and interface issues
Date resolved
|
Issue number
|
Description
|
2021-10-07 |
SPL-206833, SPL-213035, SPL-213036, SPL-213029 |
ProxySSO broken on SH cluster after upgrading Splunk from 7.2.5 to 8.0.7. Web browser shows Bad request, HTTP Request was malformed.
|
REST, Simple XML, and Advanced XML issues
Date resolved
|
Issue number
|
Description
|
2021-09-08 |
SPL-208295, SPL-208430, SPL-211259, SPL-211262 |
Can't reassign objects with colons on All Configurations page
|
Admin and CLI issues
Date resolved
|
Issue number
|
Description
|
2021-09-08 |
SPL-208295, SPL-208430, SPL-211259, SPL-211262 |
Can't reassign objects with colons on All Configurations page
|
Uncategorized issues
Date resolved
|
Issue number
|
Description
|
2021-11-10 |
SPL-214594, SPL-214585 |
Workload Management Rules preventing user field extractions after creating an admission rule search_time_range=alltime
|
2021-11-02 |
SPL-214585, SPL-209701, SPL-214594 |
Workload Management Rules preventing user field extractions after creating an admission rule search_time_range=alltime
|
2021-09-21 |
SPL-207198, SPL-208229, SPL-212063, SPL-212064 |
transforms.conf regex for multi-line event with REPEAT_MATCH set to true causes crash
|
2021-08-24 |
SPL-210529, SPL-208338 |
When using a License Manager that has both ITSI and Hunk license installed, all connected Splunk instances are showing Hunk branding
|
Feedback submitted, thanks!