Splunk® App for AWS (Legacy)

Release Notes

On July 15, 2022, the Splunk App for AWS will reach its end of life (EOL). After this date, Splunk will no longer maintain or develop this product. Splunk App for AWS is used for both IT monitoring and security use cases because it provides dashboards for both ITOps and security teams. The IT monitoring functionality in Splunk App for AWS is migrating to a content pack in Data Integrations called the Content Pack for Amazon Web Services Dashboards and Reports. The security use case functionality in Splunk App for AWS is migrating to the new Splunk App for AWS Security Dashboards. For more about migration options, see this community post.
This documentation does not apply to the most recent version of Splunk® App for AWS (Legacy). For documentation on the most recent version, go to the latest release.

The Splunk App for AWS Release Notes

These release notes apply to the Splunk App for AWS version 6.0.2.

For compatibility information, see Hardware and software requirements for the Splunk App for AWS.

If you're upgrading from a version earlier than 6.0.0, before you install version 6.0.2, you have to disable multiple saved searches and move indexes.conf. See Do these things before you upgrade in the Installation and Configuration Manual.

If you're upgrading from a version earlier than 6.0.0, after you install version 6.0.2, you have to enable acceleration for data models, update the definition for the aws-data-model-acceleration search macro, and schedule the Addon Synchronization and App Upgrader saved searches. See Do these things after you upgrade in the Installation and Configuration Manual.

What's new

New feature or enhancement Description
EC2 recommendation available for on-premises only In version 6.0.2, the EC2 recommendation feature is only available in on-premises Splunk Enterprise environments and not in Splunk Cloud environments.
Removal of biased language Occurrences of biased terms such as master, slave, blacklist, and whitelist have been replaced with appropriate non-biased terms. Occurrences of biased terms that are Splunk Enterprise references or present in third-party libraries have been kept as is.

Fixed issues

Date resolved Issue number Description
2021-01-22 AWSAPP-2602 "Config rules" dashboard dedup results in missing information
2020-08-31 AWSAPP-2316 Anomoly Overview does not work

For fixed issues relevant to accounts, inputs configuration, and knowledge management, see the Fixed issues for the Splunk Add-on for Amazon Web Services.

Known issues

Date filed Issue number Description
2021-06-22 AWSAPP-2768 Distracted UI of AWS App dashboards in cloud versions Monarch and above
2021-02-25 AWSAPP-2651 EBS Insights showing "No Recent Snapshot" despite having snapshot data
2020-12-01 AWSAPP-2509 The EC2 Recommendations Service feature doesn't work on Splunk Cloud version 8.0.0. Affected dashboards are EC2 Insights, Insights functionality in Topology dashboard, and Insights Yesterday in the Insights Overview dashboard.
2020-11-24 AWSAPP-2503 The EC2 Recommendations Service feature doesn't work in Windows on Splunk 7.3.x and Splunk 7.2.x.
2020-02-05 AWSAPP-2236 There's an invalid key error on Splunk 7.x because the app uses the Python 3 interpreter by default.
2019-08-21 AWSAPP-2156 There's a Capacity Planner: Data mismatch between Dashboard panels and the AWS Console.
2019-05-15 AWSAPP-2119 Capacity Planner (CUR): Value mismatch between panel data of Billing Legacy and Billing CUR.
2019-05-10 AWSAPP-2112 Historical Monthly Bills: Value mismatch in "Cost by Service" panel

For known issues relevant to accounts, inputs configuration, and knowledge management, see also Known issues for the Splunk Add-on for Amazon Web Services.

See also

To get started with the app, see the Installation and Configuration Manual.

For upgrade requirements, see Upgrade the Splunk App for AWS.

Last modified on 22 June, 2021
  Credits for the Splunk App for AWS

This documentation applies to the following versions of Splunk® App for AWS (Legacy): 6.0.2


Was this topic useful?







You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters