Splunk® Supported Add-ons

Splunk Add-on for Google Cloud Platform

Acrobat logo Download manual as PDF


Acrobat logo Download topic as PDF

Release notes for the Splunk Add-on for Google Cloud Platform

Version 4.0.0 of the Splunk Add-on for Google Cloud Platform was released on September 22, 2022.

About this release

Version 4.0.0 of the Splunk Add-on for Google Cloud Platform is compatible with the following software, CIM versions, and platforms:

Splunk platform versions 8.0.x, 8.1.x, 8.2.x
CIM 4.20
Platforms Platform independent
Vendor Products Google Cloud Pub/Sub
Google Cloud CloudMonitor service
Google Cloud BigQuery Billing
Google Cloud Storage
Compute Engine

New features

To better align with the Google Cloud Platform, and to provide a better understanding of the data coming from the cloud, the 4.0.0 release of the Splunk Add-on for Google Cloud Platform contains improvements to sourcetyping that affect the google:gcp:pubsub:audit:auth, google:gcp:pubsub:audit:change, and google:gcp:pubsub:message source types.

These improvements provide more granular sourcetyping on incoming data from your GCP deployment, enhancing your ability to investigate and simplifying the development of dashboards in Splunk that use GCP data. Upgrading to version 4.0.0 or higher will cause any inline searches, pivots, or reports that use these source types to not work for the GCP data that is being ingested after upgrading to version 4.0.0 of this add-on.

To ensure continuity of searches and reports on GCP data coming in after the upgrade to version 4.0.0 or later, review and perform the steps contained in the Upgrade the Splunk Add-on for Google Cloud Platform topic in this manual.

Version 4.0.0 of the Splunk Add-on for Google Cloud Platform contains the following new features.

  • Added sourcetype support for the Data Manager Google Cloud Platform input.

Fixed issues

Version 4.0.0 of the Splunk Add-on for Google Cloud Platform fixes the following issues:

Date resolved Issue number Description
2022-08-11 ADDON-50663, ADDON-53628 GCP 3.2.0 does not work with very high Storage Buckets and if there are many files in the bucket.
2022-07-25 ADDON-54061 Splunk Add-on for Google Cloud Platform does not properly ingest json data in a storage bucket.
2022-07-25 ADDON-53597 Client seeing GCP errors on SH even inputs are working fine.
2022-07-11 ADDON-53023 Splunk not parsing CSV with comma in text field

Known issues

Version 4.0.0 of the Splunk Add-on for Google Cloud Platform contains the following known issues. If no issues appear below, no issues have yet been reported:


Third-party software attributions

Version 4.0.0 of the Splunk Add-on for Google Cloud Platform incorporates the following third-party software or libraries:

Third-party software attributions for the Splunk Add-on for Google Cloud Platform

Last modified on 23 September, 2022
PREVIOUS
Source types for the Splunk Add-on for Google Cloud Platform
  NEXT
Release history for the Splunk Add-on for Google Cloud Platform

This documentation applies to the following versions of Splunk® Supported Add-ons: released, released


Was this documentation topic helpful?


You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters