Splunk® Enterprise

Release Notes

Splunk Enterprise version 8.1 will no longer be supported as of April 19, 2023. See the Splunk Software Support Policy for details. For information about upgrading to a supported version, see How to upgrade Splunk Enterprise.
This documentation does not apply to the most recent version of Splunk® Enterprise. For documentation on the most recent version, go to the latest release.

Fixed issues

Splunk Enterprise 8.1.8 was released on January 18, 2022. This release includes fixes for the following issues.

Issues are listed in all relevant sections. Some issues might appear more than once.

Distributed search and search head clustering issues

Date resolved Issue number Description
2021-11-03 SPL-208136, SPL-212205, SPL-214177 Multisite indexer cluster - duplicated events returned when using assign_primaries_to_all_sites=false

Indexer and indexer clustering issues

Date resolved Issue number Description
2021-11-03 SPL-208136, SPL-212205, SPL-214177 Multisite indexer cluster - duplicated events returned when using assign_primaries_to_all_sites=false
2021-11-03 SPL-210523, SPL-212851, SPL-214213 Splunk search with 'delete' command on multisite indexer cluster cannot delete events.

Universal forwarder issues

Date resolved Issue number Description
2021-11-23 SPL-212200, SPL-214114, SPL-214937 Heavy Forwarder crashed with Crashing thread TcpOutEloop : Splunk version 8.1.4

Monitoring Console issues

Date resolved Issue number Description
2021-11-17 SPL-214379, SPL-215268, SPL-215269 The Bucket Health Report can inherit the severity from another index, and misreport the severity for a different index

REST, Simple XML, and Advanced XML issues

Date resolved Issue number Description
2021-11-22 SPL-214703, SPL-213950 EPS drops after upgrade as a result of default 50k export cap in limits.conf

Admin and CLI issues

Date resolved Issue number Description
2021-11-15 SPL-212181, SPL-204953 A vCPU license is subject to conditional license enforcement
Last modified on 12 August, 2024
Field alias behavior change   Deprecated and removed in version 8.1

This documentation applies to the following versions of Splunk® Enterprise: 8.1.8


Was this topic useful?







You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters