Splunk® Enterprise

Release Notes

Download manual as PDF

This documentation does not apply to the most recent version of Splunk. Click here for the latest version.
Download topic as PDF


Splunk Enterprise was released on December 5, 2019. This release includes a fix for the following issue.

Date resolved Issue number Description
2019-12-05 SPL-178915, SPL-171961 The datetime.xml timestamp recognition file does not recognize two-year dates after 2019 or Unix epoch-time seconds higher than 1599999999 (12:26:39 UTC 13 Sep 2020)

Splunk Enterprise 6.6.12 was released on January 15, 2019.

Issues are listed in all relevant sections. Some issues might appear more than once. To check for additional security issues related to this release, visit the Splunk Security Portal.

Search issues

Date resolved Issue number Description
2018-11-16 SPL-162896, SPL-159002 Search process crashing - thread: phase_1 - Segmentation fault in LookupTable::applyLookup
2018-11-07 SPL-131363, SPL-127694 Chained lookups are not supported
2018-10-23 SPL-153621, SPL-158945, SPL-161869, SPL-161870, SPL-161871 Search shows "No results found" intermittently due to difference in minutes part between timezones of splunk instance and user preference

Charting, reporting, and visualization issues

Date resolved Issue number Description
2018-10-23 SPL-161707, SPL-158788 Scheduling PDF from Exporting Dashboard UI Issue

Indexer and indexer clustering issues

Date resolved Issue number Description
2018-10-26 SPL-155681, SPL-156006, SPL-162290, SPL-162291, SPL-162292, SPL-162598 Splunk on a search head, hits OOM killer by storing a vast, untold, quantity of messages

Windows-specific issues

Date resolved Issue number Description
2018-11-26 SPL-158197, SPL-160391, SPL-162352, SPL-162353, SPL-162354 splunk-regmon - failed to start the driver due to permission issue
2018-11-19 SPL-145841, SPL-156894, SPL-162146, SPL-162147, SPL-162148 MonitorNoHandle do not respect _TCP_ROUTING in inputs.conf

Authentication and Authorization issues

Date resolved Issue number Description
2018-11-22 SPL-161369, SPL-160537 saml - "Did not find a saml session index for this session, maybe a local user" should be WARN

Uncategorized issues

Date resolved Issue number Description
2018-11-08 SPL-159547, SPL-159728, SPL-160347, SPL-160350, SPL-160865 Automatic Timestamp recognition fails for formats that use single-digit zero for hours
Timestamp recognition of dates with two-digit years fails beginning January 1, 2020

This documentation applies to the following versions of Splunk® Enterprise: 6.6.12

Was this documentation topic helpful?

Enter your email address, and someone from the documentation team will respond to you:

Please provide your comments here. Ask a question or make a suggestion.

You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters