Fixed Issues
The following issues have been fixed in Enterprise Security version 3.0.1
- Modular inputs that require authentication should permit prompting for password on the command line to prevent shell history pollution. (SOLNESS-4591)
- The Enterprise Security Install App switches between SSL and non-SSL connections on SplunkWeb during an upgrade. (SOLNESS-4541)
- Threatlist creation generated by external scripts may place quotes around the "IP" field. The quoted field causes errors. (SOLNESS-4579)
- A user attempting a notable event suppression against the Application State data model
tag=service
object will fail. (SOLNESS-4580)
- The tsidx_clean_up.log may display "Error generated when running TSIDX clean up" and "TypeError: can't compare datetime.datetime to NoneType". (SOLNESS-4589)
- Installing the TA-norse on indexers will cause compatibility errors to display on
splunkd
service startup. The README file for TA-norse has been updated to reflect that it should not be installed on indexers. (SOLNESS-4497)
- Installing Splunk_TA_windows version 4.6.2 will cause compatibility errors to display on
splunkd
service startup. (SOLNESS-4475)
Release Notes | Known Issues |
This documentation applies to the following versions of Splunk® Enterprise Security: 3.0.1
Feedback submitted, thanks!