Splunk® Enterprise

Release Notes

Splunk Enterprise version 8.2 is no longer supported as of September 30, 2023. See the Splunk Software Support Policy for details. For information about upgrading to a supported version, see How to upgrade Splunk Enterprise.
This documentation does not apply to the most recent version of Splunk® Enterprise. For documentation on the most recent version, go to the latest release.

Fixed issues

Splunk Enterprise 8.2.2.1

Splunk Enterprise 8.2.2.1 was released on September 20, 2021. This release fixes the following issue:

Date resolved Issue number Description
2021-09-13 SPL-212028 Upgrading Splunk Enterprise from 8.1.5 to 8.2.x fails on Windows

Splunk Enterprise 8.2.2

Splunk Enterprise 8.2.2 was released on August 18, 2021. This release includes fixes for the following issues.

Issues are listed in all relevant sections. Some issues might appear more than once.

Authentication and authorization issues

Date resolved Issue number Description
2021-08-03 SPL-207020, SPL-196753 Embedding a Splunk dashboard in the customer's Web App using <iframe> failed in Chrome with SameSite error
2021-06-10 SPL-206095, SPL-205482 Post 8.1.3 upgrade: existing SAML configuration ceased to function. Configuration UI displays "Method not allowed" message.
2021-06-07 SPL-206757, SPL-206123 The authorize.conf setting srchIndexesDisallowed is ignored if search heads or peers are running version 8.0.x or lower in a mixed version environment

Saved search, alerting, scheduling, and job management issues

Date resolved Issue number Description
2021-07-21 SPL-208513, SPL-207377 E-mail-Addresses get moved from TO to BCC in Alert notification

Charting, reporting, and visualization issues

Date resolved Issue number Description
2021-06-04 SPL-206045 Can't open the formatting panel when user's screen is in low resolution on v1.1 dashboard

Distributed search and search head clustering issues

Date resolved Issue number Description
2021-07-13 SPL-208206, SPL-207554 Savedsearches.conf not in sync/not replicating to all SHC members
2021-06-09 SPL-206701, SPL-206055 Unable to see the scheduled type in sourcetype search_telemetry on SHC.

Indexer and indexer clustering issues

Date resolved Issue number Description
2021-11-09 SPL-214324, SPL-205462 Indexers running out of space - Splunk not honoring the 'maxVolumeDataSizeMB' setting - 8.2.2
2021-07-15 SPL-205462, SPL-210602, SPL-211950, SPL-214324 Indexers running out of space - Splunk not honoring the 'maxVolumeDataSizeMB' setting
2021-06-29 SPL-207672, SPL-205969 Linux 8.1.3 IDX clustering on Google Cloud - frequent crashes on CPs with Assertion `_chunk.size() == ((file_offset_t) -1) || n <= (size_t) _chunk.size()' failed.

Universal forwarder issues

Date resolved Issue number Description
2021-07-29 SPL-207848, SPL-207847, SPL-207849, SPL-207851, SPL-207901 UF stops ingesting sourcetype upon message - Bug during applyPendingMetadata
2021-07-19 SPL-208825, SPL-203947 After upgrade to 8.2.x all non-internal events + all internal audit logs are sent to syslog server. ES UI is very slow .
2021-06-29 SPL-208018, SPL-204906 UF has problems recognizing the DST changes.

Monitoring Console issues

Date resolved Issue number Description
2021-07-29 SPL-209419, SPL-208355 Historic License Usage report showing incorrect data when using "split by" feature

Splunk Web and interface issues

Date resolved Issue number Description
2021-08-03 SPL-207020, SPL-196753 Embedding a Splunk dashboard in the customer's Web App using <iframe> failed in Chrome with SameSite error
2021-07-19 SPL-208825, SPL-203947 After upgrade to 8.2.x all non-internal events + all internal audit logs are sent to syslog server. ES UI is very slow .

Admin and CLI issues

Date resolved Issue number Description
2021-08-04 SPL-209393, SPL-204953 A vCPU license is subject to conditional license enforcement

Uncategorized issues

Date resolved Issue number Description
2021-07-30 SPL-209394, SPL-204497 httpout on UF behaves different than tcpout when there is no TZ in the event
2021-07-27 SPL-208875, SPL-82517 Paper Size and Layout in PDF Schedule dialog do not respect Paper Size and Layout in Email Settings.
2021-07-16 SPL-207105, SPL-204962 Scheduled Jobs sendemail csv file Generated Extra Blank Rows
2021-06-29 SPL-207301, SPL-206233 Tsidx Reduction seems to create very large amount (~400) of "minify-tsidx fsck" and repeatedly for the same bucket at the same causing large amount of memory usage and OoM in extreme cases
2021-06-29 SPL-207438, SPL-204162 Splunk diag: ERROR Cannot process directory path in Windows after upgrade to 8.1.2
2021-06-10 SPL-206855, SPL-205891 8.1 Export button is a half visible in report
2021-06-03 SPL-206107, SPL-198154 Cannot edit lmpool if a member host has been resolved to 'None' in slaves list
Last modified on 12 August, 2024
Field alias behavior change   Deprecated and removed in version 8.2

This documentation applies to the following versions of Splunk® Enterprise: 8.2.2


Was this topic useful?







You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters