Splunk® Universal Forwarder

Forwarder Manual

This documentation does not apply to the most recent version of Splunk® Universal Forwarder. For documentation on the most recent version, go to the latest release.

Fixed issues

The following issues were fixed in releases of the universal forwarder.

Version was released on July 6, 2023. This release introduces no changes to universal forwarder functionality. This release is provided only for version parity with Splunk Enterprise, which fixes the one issue described in Splunk Enterprise fixed issues.


Version 9.1.0 was released on June 28, 2023. This release fixes the following universal forwarder issue.

Universal forwarder issues

Date resolved Issue number Description
2023-02-15 SPL-232028, SPL-236165, SPL-236166 Windows Defender logs stop being forwarded but other Winevent logs continue to forward until UF is restarted
Last modified on 28 September, 2023
Known issues   Third-party software

This documentation applies to the following versions of Splunk® Universal Forwarder: 9.1.0

Was this topic useful?

You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters