Splunk® Phantom (Legacy)

Release Notes

Acrobat logo Download manual as PDF


Splunk Phantom 4.10.7 is the final release of Splunk's Security Orchestration, Automation, and Response (SOAR) system to be called Splunk Phantom. All later versions are named Splunk SOAR (On-premises). For more information, see the Splunk SOAR (On-premises) documentation.
Acrobat logo Download topic as PDF

Welcome to Splunk Phantom 4.10.7

If you are new to Splunk Phantom, read About Splunk Phantom in the Use Splunk Phantom manual to learn how you can use Splunk Phantom for security automation.

Begin your Splunk Phantom installation by reviewing the following documentation:

Planning to upgrade from an earlier version?

If you plan to upgrade to this version from an earlier version of Splunk Phantom, read Prepare your Splunk Phantom deployment for upgrade in the Install and Upgrade Splunk Phantom manual.

Splunk Phantom requires incremental upgrades from earlier versions. Do not skip any required versions when upgrading Splunk Phantom.

These release notes are in addition to the release notes for Splunk Phantom 4.10.0, Splunk Phantom 4.10.1, Splunk Phantom 4.10.2, Splunk Phantom 4.10.3, Splunk Phantom 4.10.4, and Splunk Phantom 4.10.6.

End of support for TLSv1.1

This release of Splunk Phantom ends support for TLSv1.1. The nginx configuration is updated to TLSv1.2 during upgrade.

If you wish to manually update to TLSv1.2, do the following steps:

For privileged deployments

  1. Edit the file /etc/nginx/conf.d/default.conf.
    1. Change the ssl_protocols setting to TLSv1.2;.
    2. Change the ssl_session_cache setting to shared:TLS:2m;.
  2. Restart nginx.

For unprivileged deployments

  1. Edit the file <PHANTOM_HOME>/usr/nginx/conf/conf.d/phantom-nginx-server.conf.
    1. Change the ssl_protocols setting to TLSv1.2;.
    2. Change the ssl_session_cache setting to shared:TLS:2m;.
  2. Restart nginx.

What's new in 4.10.7

This release of Splunk Phantom includes the following enhancements.

Last modified on 03 September, 2021
  NEXT
Known Issues in this release of Splunk Phantom

This documentation applies to the following versions of Splunk® Phantom (Legacy): 4.10.7


Was this documentation topic helpful?


You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters