Splunk® Enterprise

Release Notes

Download manual as PDF

This documentation does not apply to the most recent version of Splunk. Click here for the latest version.
Download topic as PDF

6.4.9

Splunk Enterprise 6.4.9 was released on October 26, 2017.

The following issues have been resolved in this release. For information about security fixes not related to authentication or authorization, refer to the Splunk Security Portal.

Issues are listed in all relevant sections. Some issues appear more than once.

Data input issues

Date resolved Issue number Description
2017-09-11 SPL-133461, SPL-144794, SPL-144795, SPL-144796, SPL-144797, SPL-144799 Compressed files are deleted from sinkhole even if decompression fails

Search issues

Date resolved Issue number Description
2017-10-10 SPL-145399, SPL-144217 searchmatch() without arguments can causes crash in search process or main splunkd
2017-09-10 SPL-144366, SPL-143331 default_match is not honoured when lookup matches is 0 (using a kvstore collection)

Saved search, alerting, scheduling, and job management issues

Date resolved Issue number Description
2017-10-16 SPL-145582, SPL-122350 No results from datamodel tstats command for users with role filters, even with summariesonly=true.

Charting, reporting, and visualization issues

Date resolved Issue number Description
2017-10-18 SPL-145038, SPL-144682 Pie Chart not refreshing the results when there's no results found

Data model and pivot issues

Date resolved Issue number Description
2017-10-16 SPL-145582, SPL-122350 No results from datamodel tstats command for users with role filters, even with summariesonly=true.

Indexer and indexer clustering issues

Date resolved Issue number Description
2017-06-19 SPL-141884, SPL-142499, SPL-142500, SPL-142501, SPL-142502, SPL-142503 Confusion over "ERROR ClusteringHandler - handler=clustermastercontrol method expected=POST does not match actual=GET customaction=restart" message

Monitoring Console/DMC issues

Date resolved Issue number Description
2017-07-20 SPL-133416, SPL-143253, SPL-143255, SPL-143256, SPL-145765 DMC: Resource Usage Deployment: Load Average and Deployment-Wide Load Average panels fail to populate in Windows

Uncategorized issues

Date resolved Issue number Description
2017-10-11 SPL-142899, SPL-109470 UF Windows Installer doesn't show updated monitor path
2017-09-11 SPL-141762, SPL-144806, SPL-144807, SPL-144808, SPL-144809 Modifications to kvstore collection are not being distributed to Indexer
2017-09-11 SPL-142402, SPL-123041 Splunk crashes when deleting data from kvstore collection
2017-09-10 SPL-142822, SPL-141621 When "Use Deployment Server" option is selected on DS, "userDeploymentServer=1" config gets wrongly propagated to the Deployment Clients, which results in the "HTTP Event Collector" on the clients to stop accepting valid tokens
2017-06-30 SPL-142507, SPL-141531 Dashboard 'Description' does not take empty string when changed with "Edit Title or Description"
2017-06-26 SPL-142192, SPL-141522 Heavy Forwarder may crash in TypingThread when using Persistent Queues
PREVIOUS
Timestamp recognition of dates with two-digit years fails beginning January 1, 2020
  NEXT
6.4.8

This documentation applies to the following versions of Splunk® Enterprise: 6.4.9, 6.4.10, 6.4.11


Was this documentation topic helpful?

Enter your email address, and someone from the documentation team will respond to you:

Please provide your comments here. Ask a question or make a suggestion.

You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters