Splunk® Enterprise

Release Notes

Download manual as PDF

This documentation does not apply to the most recent version of Splunk. Click here for the latest version.
Download topic as PDF

6.4.4

Splunk Enterprise 6.4.4 was released on October 3, 2016.

The following issues have been resolved in this release. For information about security fixes not related to authentication or authorization, refer to the Splunk Security Portal.

Issues are listed in all relevant sections. Some issues appear more than once.

Search issues

Date resolved Issue number Description
2016-09-07 SPL-122518, SPL-116867 Search Process crashes in dispatch thread when the custom alert condition search contains invalid search query
2016-09-06 SPL-128147, SPL-124515 unclear INFO message on search.log: INFO RetryManager - Peer="..." at generation="0" was temporarily missing from the set of search peers. If the peer goes down while its information is missing, the search can return incomplete results...

Saved search, alerting, scheduling, and job management issues

Date resolved Issue number Description
2016-08-19 SPL-124770, SPL-124301 Data Model Acceleration stop running for certain Data Model after success=0 multiple times(?)
2016-08-17 SPL-126267, SPL-126220 SUMMARY_INPROGRESS is not locked when checking its size in SummaryDirector::canRunSummarizationJob
2016-08-17 SPL-125741, SPL-124148 Captain is delegating Data Model Acceleration search to members more than two concurrently while "acceleration.max_concurrent = 2"

Charting, reporting, and visualization issues

Date resolved Issue number Description
2016-08-11 SPL-125123 The dashboard parser throws an error when non-integer value is used for the <sampleRatio> option

Data model and pivot issues

Date resolved Issue number Description
2016-08-19 SPL-124770, SPL-124301 Data Model Acceleration stop running for certain Data Model after success=0 multiple times(?)
2016-08-17 SPL-126267, SPL-126220 SUMMARY_INPROGRESS is not locked when checking its size in SummaryDirector::canRunSummarizationJob
2016-08-17 SPL-125741, SPL-124148 Captain is delegating Data Model Acceleration search to members more than two concurrently while "acceleration.max_concurrent = 2"

Distributed search and search head clustering issues

Date resolved Issue number Description
2016-09-13 SPL-122602, SPL-128604, SPL-128605 Memory leak triggered by reloading splunkd SSL servers without restarting the process.
2016-09-06 SPL-123853, SPL-122047, SPL-128149, SPL-129175 Show all settings in SHC not functioning properly
2016-09-06 SPL-126217, SPL-125817 Splunk incorrectly reports that historical concurrent system-wide searches had been reached
2016-09-02 SPL-126604, SPL-125138 The description of shc_local_quota_check in limits.conf.spec is inaccurate
2016-08-22 SPL-126855, SPL-126851 SHC does not log the error message on per-member quota failures to scheduler.log
2016-08-19 SPL-124770, SPL-124301 Data Model Acceleration stop running for certain Data Model after success=0 multiple times(?)
2016-08-19 SPL-126099, SPL-116466 Uneven scheduled search delegation between SHC members
2016-08-17 SPL-125741, SPL-124148 Captain is delegating Data Model Acceleration search to members more than two concurrently while "acceleration.max_concurrent = 2"
2016-08-03 SPL-125456, SPL-122601 Scheduled searches periodically skipped in search-head cluster allegedly due to user-scoped search quota exceeded for "system" user

Windows-specific issues

Date resolved Issue number Description
2016-08-16 SPL-126606, SPL-120078 splunk-admon.exe fails to update internal 'admon://NearestDC' configuration when Domain Controller is changed.

Admin and CLI issues

Date resolved Issue number Description
2016-08-12 SPL-125240, SPL-123834 CLI commands such as "show cluster-status" results in core dump
2016-08-05 SPL-125461 When creating a new index from an app context, the current app is not selected in the app dropdown on new index page

Unsorted issues

Date resolved Issue number Description
2016-08-30 SPL-127095, SPL-123187, SPL-127079 Duplicate events with indexerDiscovery following outages on indexer cluster.

Uncategorized issues

Date resolved Issue number Description
2016-08-24 SPL-126535, SPL-127260, SPL-128163 Dashboard replace eval-function does not perform a global replacement
2016-08-12 SPL-126158, SPL-121463 6.4.4 - HTTP Event collector -> Global settings -> Footer div covers the index dropdown and does not allow scrolling
PREVIOUS
6.4.5
  NEXT
6.4.3

This documentation applies to the following versions of Splunk® Enterprise: 6.4.4, 6.4.5, 6.4.6, 6.4.7, 6.4.8, 6.4.9, 6.4.10, 6.4.11


Was this documentation topic helpful?

Enter your email address, and someone from the documentation team will respond to you:

Please provide your comments here. Ask a question or make a suggestion.

You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters