What's new
This page summarizes the new features and enhancements in each release of Splunk Cloud Platform. Use the Version drop-down list to see information for other versions of Splunk Cloud Platform.
The product features deployed in your environment might vary depending on your topology, deployment type, and configuration settings.
Also discover what's new in the following features of Splunk Cloud Platform:
- Cloud Monitoring Console
- Admin Configuration Service
- The Edge Processor solution
- The Ingest Processor solution
9.1.2312
New feature, enhancement, or change | Description |
---|---|
Ingest Actions available on Splunk Cloud Platform on GCP | This unlocks the nearly full suite of Ingest Actions capabilities including 'filter' 'mask' and 'set index' to Splunk Cloud Platform customers on GCP. Routing support to S3 or GCS are not included as part of this release. |
Schedule PDF exports for Dashboard Studio | You can schedule a PDF export of your dashboards for email delivery. For more details, see Download and schedule email exports of dashboard content for sharing. |
Removed file command
|
The previously disabled file command is now removed for all customers as of 9.1.2312.
|
Navigation link to Edge Processor service | You can now navigate from Splunk Cloud Platform to the Edge Processor service by opening the Settings menu and then selecting Edge Processor from the Data section. This Edge Processor link is available only when both of these conditions are met:
|
Automatic removal of users on a Splunk platform instance that uses Okta as a Security Assertion Markup Language (SAML) protocol identity provider for authentication | When you connect your Splunk platform instance to an Okta SAML identity provider (IdP) for authentication, you can configure the platform so that if you remove a user from the IdP, the platform also removes the Splunk user that is associated with the SAML user. See Configure the Splunk platform to remove users on Okta in the Securing Splunk Cloud Platform Manual. |
Role-based field filters do not work upon upgrade to this or later releases | Role-based field filters that released as a preview feature in previous versions of Splunk Cloud Platform do not work in this or subsequent releases. Role-based field filters have been replaced by field filters. |
Preview feature: Addition of field filters in Splunk Web to protect sensitive information | Now you can use field filters in Splunk Web to obfuscate or redact data such as personal identifiable information (PII) and protected health information (PHI), and control which users can see that sensitive information. For more information about field filters, see Protect PII, PHI, and other sensitive data with field filters.
--- To turn on field filters in your Splunk Cloud environment, request help from Splunk Support. If you have a support contract, file a new case using the Splunk Support Portal at Support and Services. Otherwise, contact Splunk Customer Support.
If you used the preview feature, role-based field filters, in a previous release of Splunk Cloud Platform, you must create new field filters to protect your sensitive data. Role-based field filters do not work in this or subsequent releases, and are not compatible with field filters. |
Federated Search - Turn all federated providers off or on in batch mode | Turn all federated providers for federated search off or on with one REST API call. You can turn off federated search capability for troubleshooting or other reasons, and turn it back on when you are ready to restore federated search service.
|
Federated Search - Turn individual federated indexes off or on | Turn a single federated index off or on with one REST API call. If you determine that there may be problems with a specific federated index, turn it off while leaving other federated indexes associated with the same federated provider up and running. When the issues affecting the federated index are resolved, turn the federated index back on.
|
Interactive search for Settings menu | The Settings menu in Splunk Web now provides an interactive search bar that lets you easily find nested pages up to two levels deep. For example, you can use interactive search to access sub-pages on the Server Settings page, such as the Webhook allow list page, which were previously only accessible by clicking on the parent page. |
Use of the _reload action with the rest search command is disabled
|
Do not use the _reload action with the rest command.
|
Workload Management enhancements | Enhanced search_time_range predicate functionality now lets you match workload rules and admission rules to specific search time ranges to improve search efficiency over large amounts of data.
|
The relevancy command is removed.
|
Do not use the relevancy command.
|
The /services/search/commands REST API endpoint is deprecated.
|
The undocumented /services/search/commands REST API endpoint is deprecated and will be removed in a future release. If you have been inadvertently using this endpoint, stop using it.
|
The timeout argument for the append command is removed.
|
Do not use the timeout argument. It has no effect on searches.
|
Welcome to Splunk Cloud Platform | Known and fixed issues for |
This documentation applies to the following versions of Splunk Cloud Platform™: 9.1.2312
Feedback submitted, thanks!