Splunk® Data Stream Processor

Release Notes

DSP 1.2.1 is impacted by the CVE-2021-44228 and CVE-2021-45046 security vulnerabilities from Apache Log4j. To fix these vulnerabilities, you must upgrade to DSP 1.2.4. See Upgrade the Splunk Data Stream Processor to 1.2.4 for upgrade instructions.

On October 30, 2022, all 1.2.x versions of the Splunk Data Stream Processor will reach its end of support date. See the Splunk Software Support Policy for details.
This documentation does not apply to the most recent version of Splunk® Data Stream Processor. For documentation on the most recent version, go to the latest release.

Fixed Issues for DSP

Date resolved Issue number Description
2021-03-02 DSP-32261, DSP-28080 Pipeline fails intermittently while parsing a date format in an Apply Timestamp Extraction function
2021-02-25 DSP-34031 In HEC sink, unhandled exception causes pipeline restarts
2021-02-24 DSP-34067 DSP 1.2.0 fails preflight checks on RHEL/Centos 8.3
2021-02-22 DSP-33687 In HEC sink, server response cannot be read correctly in case of retries and ACK enabled
2021-02-18 DSP-33028 Ingest-s2s pods in a potential deadlock state
2021-01-26 DSP-20379 User named functions are lost when toggling between the Canvas and the SPL2 Builders.
2021-01-12 DSP-28395, DSP-28139 You cannot reactivate a pipeline if you do a round-trip toggle from Canvas -> SPL -> Canvas.
2021-01-06 DSP-31299, DSP-31300, DSP-31322 Splunk App for DSP: Improve dropdown filtering when collecting metrics from multiple clusters
2021-01-05 DSP-31160 HEC sink leaks memory when ACK is disabled
2020-12-11 DSP-30903 HEC Sink throws ArrayOutOfBoundException eventually
2020-11-30 DSP-29917 KV store lookups caching should be on by default
2020-11-17 DSP-29322, DSP-34095 Under low throughput conditions, records batched in batch_bytes, batch_records, and splunk_enterprise_indexes do not get flushed using the default timeout.
2020-10-30 DSP-28602 SignalFX sink and lookups fails to checkpoint when event has a map field.
2020-10-23 DSP-28408, DSP-28179 1.1 --> 1.2 Multiple Upgrade pipeline failure due to Caused by: org.apache.flink.util.StateMigrationException: The new key serializer must be compatible.
2020-10-19 DSP-28179, DSP-28408 After upgrading from 1.1 to 1.2, pipelines with stats functions are stuck in "RESTARTING" mode.
2020-09-21 DSP-26854 To_Splunk_JSON and the Write to Splunk with Batching functions do not handle timestamp and host fields correctly for metrics data. Timestamps are converted incorrectly and the host field is dropped.
Last modified on 13 June, 2021
Known issues for DSP   Third-party credits in Splunk DSP

This documentation applies to the following versions of Splunk® Data Stream Processor: 1.2.1


Was this topic useful?







You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters