Splunk® App for Microsoft Exchange (EOL)

Deploy and Use the Splunk App for Microsoft Exchange

On October 22 2021, the Splunk App for Microsoft Exchange will reach its end of life. After this date, Splunk will no longer maintain or develop this product. The functionality in this app is migrating to a content pack in Data Integrations. Learn about the Content Pack for Microsoft Exchange.
This documentation does not apply to the most recent version of Splunk® App for Microsoft Exchange (EOL). For documentation on the most recent version, go to the latest release.

Release notes

This topic contains information on new features, known issues, and updates as we version the Splunk App and Technology Add-ons for Microsoft Exchange.

What's new

Here's what's new in the latest version of the Splunk App for Microsoft Exchange:

  • Numerous bug fixes.
  • New technology add-ons (TAs) for Microsoft Exchange 2013.
  • Updated TAs for Microsoft Exchange 2010.
  • New data inputs for Mailbox Auditing, Distribution Lists, Inbox Rules and Client Access Server (CAS) throttling policies.
  • New dashboards for Internal Spamming Reports and Distribution List Expansions.
  • Support for Blackberry Enterprise Server and Forefront Security for Exchange has been deprecated.

For more information about these updates, read "Upgrade the Splunk App for Microsoft Exchange."

Current known issues

The Splunk App for Microsoft Exchange has the following known issues:

  • Older versions of the universal forwarder might not correctly get some Windows events. To fix this issue, upgrade your forwarders to the latest version. (SPL-51312)

Change log (what's been fixed)

  • The "Top Operating Systems" and "Top Mail Clients" lists in the "Client Behavior > Exchange Web Services" menu now behave as expected. (MSAPP-1105)
  • The app now properly supports Exchange 2013 Cumulative Update 1. (MSAPP-1117)
  • Some extraneous references in the app's props.conf were removed. (MSAPP-1140)
  • The TA_SMTP_Reputation technology add-on now works properly with pooled search heads (search heads that share a common storage area). (MSAPP-1190)
  • The TA_Exchange_*_MailboxStore technology add-ons now properly collect mailbox audit logs. (MSAPP-359, MSAPP-391, MSAPP-1196)
  • Several included technology add-ons which had been reported to cause high memory consumption on Exchange servers now no longer do so. (MSAPP-1530)
Last modified on 10 December, 2013
Troubleshoot the Splunk App for Microsoft Exchange  

This documentation applies to the following versions of Splunk® App for Microsoft Exchange (EOL): 2.1.1


Was this topic useful?







You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters