Fixed issues in Splunk UBA
This version of Splunk UBA was released on July 28, 2022 and fixes the following issues.
Date resolved | Issue number | Description |
---|---|---|
2022-12-19 | UBA-14890 | ClassCastException errors in the LateralMovementDetection Model |
2022-09-16 | UBA-15890 | Although UBA shows a threat is closed in UBA, the threat shows in ES as "Active" |
2022-07-25 | UBA-14954, UBA-15198 | Postgresql 10.17 missing libjson-perl |
2022-05-13 | UBA-15608, UBA-14502 | Exporting >4.3K Anomalies table results - crashes UBA UI (Permanent fix for UBA-14502) |
2022-05-12 | UBA-15139 | Postgresql-client-10 missing libpq5 (>=10.17) |
2022-03-18 | UBA-14516 | Health Monitor - An error occurred while retrieving data - Error from /uba/monitor Invalid Json response: Error in getting the response Parameters: {"queryStatus":true,"queryDataQualityStatus":true} |
2022-02-14 | UBA-15328 | Running replication setup on 20 node clusters fails with "psql: could not connect to server: Connection refused" |
2022-02-08 | UBA-15302 | "Error from /uba/watchlistChanged" even when an entity is added successfully to the WatchList |
2022-02-07 | UBA-15311 | Upgrade Standby cluster fails "ERROR: cannot execute UPDATE in a read-only transaction." |
2022-01-11 | UBA-15241 | Threat number mismatch between UBA and ES |
2022-01-04 | UBA-15130 | Custom model not triggering |
2021-12-08 | UBA-15120, UBA-15192 | Customizations to Splunk_TA_nix/local/inputs.conf breaks patch_uba.sh |
2021-11-19 | UBA-14199, UBA-12111 | Impala jdbc connections leak |
2021-11-02 | UBA-14927, UBA-15186 | UBA 5.0.5 upgrade script fails to upgrade forwarder to 8.2.1 |
2021-08-31 | UBA-14669 | UBA - Multiple Errors Status code DS-1, Status code DS-5, Status code DS_LAGGING_WARN |
2021-08-27 | UBA-14251 | UBA triggers Anomalies Related to Job Search When Users Visit Unrelated Sites |
2021-06-15 | UBA-14390 | New threats sent to ES have incorrect "status" field value |
2021-05-26 | UBA-14493 | IP change steps not working |
2021-05-25 | UBA-14508 | Unable to add datasource (Connection time out) - UBA to Cloud connectivity via proxy |
Known issues in Splunk UBA | Log4j in Splunk UBA 5.1.0 |
This documentation applies to the following versions of Splunk® User Behavior Analytics: 5.1.0
Feedback submitted, thanks!