Splunk Stream

Release Notes

This documentation does not apply to the most recent version of Splunk Stream. For documentation on the most recent version, go to the latest release.

Known issues

Known issues in Splunk App for Stream 6.0.1:

Defect number Description
STREAM-2268 imap "password" field is missing.
STREAM-2222 Stream tries to open pcap adapter on inactive interface.
STREAM-2193 The stream id (labeled 'Name' in the Configure Streams UI) is case sensitive. This lets you create a stream with the same name as a default stream, for example, id "HTTP", which you can confuse with the default stream id "http."
STREAM-2190 Stream Forwarder skips IP packets with zero length (ip.len==0) in the IP header.
STREAM-2183 request_time, reply_time, and response_time flow metrics are not populated for all protocols.
STREAM-2179 Sparkline in Configure Streams UI under certain circumstances incorrectly shows zero traffic volume for protocols.
STREAM-2169 SSL key stored in local/directory.
STREAM-2156 streamfwd process may exhibit unbounded memory growth when running on Splunk Universal Forwarder instance that is unable to forward events, most commonly because of incorrect tcpout parameters in outputs.conf configuration.
STREAM-1909 SNMP events not returning key pieces of data due to lack of parsing from original binary format.
STREAM-1834 Inefficient captured packet queueing.
STREAM-1205 Installing Splunk App for Stream through the Splunk Web Apps > Find more apps menu results in a corrupted download/installation. Workaround: Manually re-create the .modinput files that Splunk Web removes, or start the install over from scratch.
cd $SPLUNK_HOME/etc/apps/Splunk_TA_stream
touch darwin_x86_64/bin/.modinput linux_x86/bin/.modinput linux_x86_64/.modinput
Last modified on 22 October, 2015
  Fixed Issues

This documentation applies to the following versions of Splunk Stream: 6.0.1


Was this topic useful?







You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters