Splunk® App for VMware (Legacy)

Release Notes

On August 31, 2022, the Splunk App for VMware will reach its end of life. After this date, Splunk will no longer maintain or develop this product. The functionality in this app is migrating to a content pack in Data Integrations. Learn about the Content Pack for VMware Dashboards and Reports.
This documentation does not apply to the most recent version of Splunk® App for VMware (Legacy). For documentation on the most recent version, go to the latest release.

Known issues in Splunk App for VMWare 3.1.1

  • Clean up the existing SA-VMW-Licensecheck folder/app from previous installations upon upgrade (SOLNVMW-3899)
  • Release 3.1.1 includes partial support for remote license masters. It is partial in the sense that:
    • If the license master is remote, the App Data Volume page on a slave does not list the _size_ of app licenses. The App Data Volume page does indicate the existence of a license.(SOLNVMW-3858, SOLNVMW-3874)
    • On the App License Status page, remote license masters always report the expiration date of app licenses as ∞ (infinite), although it may actually be less. (SPL-91339)
  • Syslog data from syslog server not getting indexed. Syslog data sent from a syslog server, with a line breaking issue, in the following format is not indexed (by Splunk_TA_esxilogs). (SOLNVMW-3748)
0-dd6d170cebd6
' opID=SWI-7f741cda-80] [VpxLRO] -- FINISH task-internal-157304 --  -- vpxapi.VpxaService.fetchQuickStats -- 52bfdd7d-118e-3345-58e0-dd6d170cebd6
ete (processed 29730 bytes)
  • For a search head pooled environment, in the App Install Health dashboard, the panel displaying the data collection node does not populate. (SOLNVMW-3360).
  • Error when user skips configuration of collection nodes.You must configure data collection to get data into the app. (SOLNVMW-3294).
  • In certain cases, ESXi logs coming via Syslog are assigned an incorrect sourcetype. (SOLNVWM-3257).
  • If you configure Syslog using intermediate forwarders and loghost values are not returned, the ESXi host becomes unresponsive to the API and no error message is displayed. (SOLNVMW-3245).
  • On IE9, IE9: The Threshold Configuration view's height grows unexpectedly as you enter text in the textbox (SOLNVMW-3168).
  • A powered off vm cannot lookup datastore information from time based lookup TimeDatastoreSummary. (SOLNVMW-3083).
  • The VM Detail view (that shows the performance of a VM across migrations) is not displayed correctly when the TimeHierarchyVM lookup is missing migration data for the virtual machines. When the lookup is not updated correctly the summary data can not be correctly tied to the hierarchy. This breaks views such as VM Detail that show the performance of a VM across migrations. (SOLNVMW-2186).
  • The tsidx_retention.py script that grooms search head pool shared namespaces for TSIDX files fails to clean up the files because of a bug in the /services/data/indexes endpoint that it references. This endpoint outputs a blank value for the tsidxstatshomepath attribute on Splunk Enterprise versions v6.1.1 through 6.1.4 and 6.2.0. The bug has been fixed in versions v6.1.5 and v6.2.1. If you run any of the affected versions, you must delete the TSIDX files manually from the shared namespace. Doing so does not result in data loss. (TAG-9416, SPL-86606)
  • Autocomplete text box is empty and not populating data in views on Windows due to failing to run generateIIT.py. Note: SH on Windows is not QA-tested in this version. (TAG-8879)
  • Requires to clicks refresh button every several hours to list as valid due to missing ModularInput scheme in inputs.conf.spec (TAG-8961)
  • In Collection Configurations, vCenter authentication fails when special characters are used in password.(TAG-8211)
Last modified on 22 June, 2015
How to get help with Splunk App for VMWare   Fixed issues in Splunk App for VMWare 3.1.1

This documentation applies to the following versions of Splunk® App for VMware (Legacy): 3.1.1


Was this topic useful?







You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters