Splunk® Enterprise

Release Notes

Download manual as PDF

This documentation does not apply to the most recent version of Splunk. Click here for the latest version.
Download topic as PDF


Splunk Enterprise 6.2.8 was released on January 13, 2016.

The following issues have been resolved in this release:

Security issues

For a list of security issues, please see the Security Advisory. A list of all recent advisories can be found in the Security Portal.

Data input issues

Publication date Defect number 'Description
2016-1-12 SPL-109473 On data inputs page, the available hosts and server class list shows only 30 items.

Indexers and indexer clustering issues

Publication date Defect number Description
2016-1-12 SPL-109902, SPL-96886 MAX_DIFF_SECS_AGO and MAX_DIFF_SECS_HENCE accept events outside the expected time range.
2016-1-12 SPL-108130 Empty hot bucket stays forever, which causes issues with bucket replication.

Search, saved search, alerting, scheduling, and job management issues

Publication date Defect number Description
2016-1-12 SPL-105642 tstat queries using prestats and append do not work when using earliest and latest.
2016-1-12 SPL-105581 Search with an eval or calculated field which calls the tostring(..., "duration") function fails with: "Invalid number".
2016-1-12 SPL-105134 sendemail fails due to invalid control characters in the search result.
2016-1-12 SPL-104697 Fewer results returned because calculated fields do not expand properly.
2016-1-12 SPL-58519 In a search, using "fields" command after "transpose" command adds subsequent search field names to results list.

Splunk Web and Home interface issues

Publication date Defect number Description
2016-1-12 SPL-108472 Incorrect timezone value for Yekaterinburg on manager page.
2016-1-12 SPL-104732 The time range indicators do not render properly when a dashboard is configured with multi-series mode and map.

Distributed search and search head clustering issues

Publication date Defect number Description
2016-1-12 SPL-104439 Deleting a global saved search after cloning also deletes the cloned search.

Unsorted issues

Publication date Defect number Description
2016-1-12 SPL-110331 Long integer value is truncated when shown in json highlighted view.
2016-1-12 SPL-107240 Unable to add licenses with future start date.
2015-1-12 SPL-98904 TcpOutputProc reports inaccurate, bloated values for tcpout group blockage.
2016-1-12 SPL-95121, SPL-93893 Splunk 6.2 installer fails if msi database on the machine is partially corrupted.

This documentation applies to the following versions of Splunk® Enterprise: 6.2.8, 6.2.9, 6.2.10, 6.2.11, 6.2.12, 6.2.13, 6.2.14, 6.2.15

Was this documentation topic helpful?

Enter your email address, and someone from the documentation team will respond to you:

Please provide your comments here. Ask a question or make a suggestion.

You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters