Splunk® IT Essentials Work

Release Notes for Splunk IT Essentials Work

This documentation doesn't apply to the most recent version of Splunk IT Essentials Work.
This documentation does not apply to the most recent version of Splunk® IT Essentials Work. For documentation on the most recent version, go to the latest release.

Fixed issues in IT Essentials Work

Splunk IT Essentials Work version 4.17.0 was released on June 13, 2023. Issues are listed in all relevant sections, so some issues might appear more than once.

Adaptive Thresholding

Date resolved Issue number Description
2023-05-02 ITSI-29200 Change in the threshold value of a KPI in a service template does not update in the services linked to it.
2023-01-24 ITSI-27867 In Adaptive Thresholding, clicking on Apply button shows any warning as errors in UI.

Backup/Restore and Migration Issues

Date resolved Issue number Description
2023-05-12 ITSI-29305 Restore is failing for the large backup on the WiredTiger Storage engine for the MongoDB
2023-04-06 ITSI-28926 kvstore_to_json.py restore operations do not remove existing services

Bulk Import

Date resolved Issue number Description
2023-02-06 ITSI-26033 List of entities takes a long time to load in the preview for service section

Notable Events

Date resolved Issue number Description
2023-04-21 ITSI-29292 Update information in Skipped Events panel in Event Analytics Monitoring Dashboard.
2023-04-17 ITSI-28707 Color for custom severity is not displayed correctly in Correlation Search Builder, Notable Event Aggregation Policy Editor and Episode Review page.
2023-03-30 ITSI-29095 Episode Detail Dashboard does not show updated token values.
2023-03-27 ITSI-29214 Episode Detail Panel does not display full name of user correctly.
2023-03-24 ITSI-29098 Re-ordering the columns does not work in Episode review.
2023-03-21 ITSI-28231 Episodes disappear after refresh in episode review dashboard.
2023-03-20 ITSI-28015 The episode link in "Share Episode" does not get updated in right click menu.
2023-02-06 ITSI-26825 Episode Review timeline search is triggered even when summary dashboard is closed which wastes resources.
2023-02-06 ITSI-27640 Event Analytics Monitoring dashboard does not list all NEAP.
2023-01-20 ITSI-27751 Episode Review arbitrary search filter with AND & OR conditions fail to match events under certain scenarios.
2023-01-17 ITSI-28046 Alert action configuration UI not loaded in ITSI when the count of alert actions exceed 30.

Glass Table

Date resolved Issue number Description
2023-05-18 ITSI-29450 Variable should be passed between different widgets in glass table.

KPI Search Calculation

Date resolved Issue number Description
2023-01-24 ITSI-27721 KPI title surrounded with double quotes throws an error while running a KPI-generated search.

Maintenance Window

Date resolved Issue number Description
2023-05-18 ITSI-29732 Maintenance Window page is stuck at Loading at Configurated Entities tab intermittently.
2023-03-31 ITSI-29078 Retired entities not being filtered out of Maintenance Window List of Entities.

Service Definition

Date resolved Issue number Description
2023-05-02 ITSI-28820, ITSI-28804 An ITSI service created from a service template with no defined filter condition will cause the service to add all entities.
2023-05-01 ITSI-29486 Block users from saving a service with empty field in entity rules.

Service Templates

Date resolved Issue number Description
2023-05-02 ITSI-28820, ITSI-28804 An ITSI service created from a service template with no defined filter condition will cause the service to add all entities.
2023-05-02 ITSI-29200 Change in the threshold value of a KPI in a service template does not update in the services linked to it.

Uncategorized issues

Date resolved Issue number Description
2023-05-16 ITSI-29738 Clicking on "Run fix" button is not resolving the issue of "Missing KPI base search".
2023-05-10 ITSI-29133 Episode Review dashboard panel for Noise reduction should not show "Missing property: majorValue".
2023-05-02 ITSI-29521 Fix the itsi_module_interface API to fetch more than 30 apps having prefix DA-ITSI.
2023-04-27 ITSI-29506 App inspect report failing for authored content pack with saved searches.
2023-04-17 ITSI-27928, ITSI-27925 Private Episodes should be created or read even if the capabilities are not provided.
2023-04-03 ITSI-29099 Intermittently facing the issue where episode status does not reflect the NEAP when the episodes are being closed.
2023-04-03 ITSI-26046 NumberFormatException causing Episodes to remain unbroken when NEAP is time-based and Episode Severity set to Same as Highest Severity.
2023-04-03 ITSI-29110 The advanced filter on the Entity Management page times out when attempting to filter a large number of entities using the "does not match" filter for the entity type.
2023-03-20 ITSI-18574 Base search "head" command is removing relevant event data for snapshots, probably depending on the time you look at it.
2023-03-06 ITSI-27961 Bidirectional Ticketing Correlation Search hits "subsearch limit of 50000 reached" when the collection itsi_notable_event_ticketing has more than 50000 entries.
2023-03-06 ITSI-27798 Correlation Search Count is not visible in UI.
2023-03-06 ITSI-27627 Correlation search - count API throws "500 internal server error" when filter is performed on a name which doesn't match with any search.
2023-02-26 ITSI-28829 The time-based breaking event replaces the episode information fields.
2023-02-15 ITSI-28799 Content Authorship does not support custom font size in splunk.markdown feature of glass table.
2023-02-06 ITSI-28026 "Show Alternative Views" UI toggle too small.
2023-02-01 ITSI-27586 EA Smart Recycling in retention policy not considering all end status in case of custom configurations.
2023-01-24 ITSI-27863 Vital metrics show up as N/A for individual entities in Entity Overview Page.
Last modified on 07 June, 2023
New features in Splunk IT Essentials Work   Known issues in IT Essentials Work

This documentation applies to the following versions of Splunk® IT Essentials Work: 4.17.0


Was this topic useful?







You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters