Splunk® Common Information Model Add-on

Common Information Model Add-on Manual

This documentation does not apply to the most recent version of Splunk® Common Information Model Add-on. For documentation on the most recent version, go to the latest release.

Release notes for the Splunk Common Information Model Add-on

Fixed issues

Version 4.3.1 of the Splunk Common Information Model Add-on fixes the following issues:

Resolved date Defect number Description
2015-10-08 CIM-317 Transforms for SSL extractions need to be included in CIM.

Known issues

Version 4.3.1 of the Splunk Common Information Model Add-on has the following known issues:

Date Defect number Description
2016-03-14 CIM-334 Configuration changes using CIM app setup in Safari web browser fail.
2015-06-18 CIM-307 Improper call to addCellRenderer and render from predictive_analytics.js.
2014-10-24 CIM-238 BaseEvent object hierarchy makes accelerated search unwieldy.
2014-10-10 CIM-226 In Ticket Management, field "dest" should be used for the machine that the ticket concerns.
2014-10-03 CIM-221 Field extraction should avoid variable keys whenever possible.
2014-10-03 CIM-220 Event types should avoid KV whenever possible.
2014-07-07 CIM-169 / SPL-92488 Remote search log warning messages from acceleration due to long search strings. Workaround: turn off truncation on indexers in etc/system/local/props.conf as shown:

[splunkd_remote_searches] TRUNCATE = 0

2013-10-11 CIM-85 Inconsistent use of url and uri in Web data model fields.

Third-party software attributions

Version 4.3.1 of the Splunk Common Information Model Add-on does not incorporate any third-party software or libraries.

Last modified on 16 March, 2016
Install the Splunk Common Information Model Add-on   Support and resource links for the Splunk Common Information Model Add-on

This documentation applies to the following versions of Splunk® Common Information Model Add-on: 4.3.1


Was this topic useful?







You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters