Release notes for the Splunk Add-on for Windows
Version 8.8.0 of the Splunk Add-on for Windows was released on August 3, 2023.
The Splunk Add-on for Windows DNS version 1.0.1 and the Splunk Add-on for Windows Active Directory version 1.0.0 are not supported when installed alongside the Splunk Add-on for Windows versions 6.0.0 and higher. The Splunk Add-on for Windows versions 6.0.0 and higher includes the Splunk Add-on for Windows DNS and the Splunk Add-on for Microsoft Active Directory.
Version 8.8.0 of the Splunk Add-on for Windows is compatible with the following software, CIM versions, and platforms:
|Splunk platform versions||8.1.x, 8.2.x, 9.0.x|
|CIM||4.15 and later|
|Vendor Products||Windows Server 2022, Windows 11, Windows Server 2019, Windows 8.1, Windows 10, Windows Server 2012/2012 R2, Windows Server 2016, Microsoft Active Directory, Microsoft Windows DNS Server|
New or changed features
Version 8.8.0 of the Splunk Add-on for Windows has the following new or changed features:
- Added a new data input to collect BIOS data from Windows hosts. See Collect BIOS data from the Windows Host Machine for more details on this data input and how to use it.
- CIM enhancements for EventCode 4798. See Field Changes for more details on the Event Code changes.
- Windows Security EventCode 4798, has been mapped to the Change:Account_Management and Event_Signatures:Signatures data model.
See CIM model and Field Mapping changes for WinEventLog:Security more details on the Event Code changes.
Version 8.8.0 of the Splunk Add-on for Windows fixes the following issues:
|Date resolved||Issue number||Description|
|2023-07-17||ADDON-61962||Group_Name field extraction of windows security classic event for EventCode 4756|
Version 8.8.0 of the Splunk Add-on for Windows contains the following known issues. If no issues appear below, no issues have yet been reported:
Source types for the Splunk Add-on for Windows
Hardware and software requirements for the Splunk Add-on for Windows
This documentation applies to the following versions of Splunk® Supported Add-ons: released