Splunk® Enterprise

Release Notes

Download manual as PDF

This documentation does not apply to the most recent version of Splunk. Click here for the latest version.
Download topic as PDF

6.6.7

Splunk Enterprise 6.6.7 was released on April 18, 2018.

For information about other security fixes, refer to the Splunk Security Portal.

Issues are listed in all relevant sections. Some issues appear more than once.

Highlighted fixed issues

Date filed Issue number Description
2018-02-23 SPL-151110, SPL-146088, SPL-151808 Clustering creates extra copies of buckets erroneously.
2018-01-29 SPL-148600, SPL-148969, SPL-151807, SPL-151902 Indexer may crash during hot bucket rolling following a streaming failure

Highlighted issues

Date resolved Issue number Description
2018-03-03 SPL-148600, SPL-148969, SPL-151807, SPL-151902 Indexer may crash during hot bucket rolling following a streaming failure
2018-03-01 SPL-151110, SPL-146088, SPL-151808 Clustering creates extra copies of buckets erroneously.

Data input issues

Date resolved Issue number Description
2018-04-05 SPL-148977, SPL-114085 When a *.tgz file was read, the result was "finished reading" but the percent still showing 0%.
2018-04-03 SPL-147223, SPL-127642 Powershell log file "splunk-powershell.ps1.log" never rolls

Search issues

Date resolved Issue number Description
2018-04-01 SPL-152735, SPL-135296 SearchResults complains in splunkd.log about a corrupt CSV file header without naming the problematic file or lookup table
2018-03-20 SPL-151635, SPL-147702 Vertical tab and 255 other characters in a savedsearches.conf can break the savedsearches REST endpoint
2018-03-11 SPL-151212, SPL-149088 Exporting the results in csv format from from any app on splunk, Customer sees alternate blank rows ie exported CSV file.
2018-02-14 SPL-146082, SPL-148873, SPL-148874 Edit Summary Indexing Dialog not working with searches containing subsearches

Saved search, alerting, scheduling, and job management issues

Date resolved Issue number Description
2018-03-18 SPL-149014, SPL-140413, SPL-146356 SHC captain stops delegating searches to itself after a while when using scheduler_load_based

Charting, reporting, and visualization issues

Date resolved Issue number Description
2018-04-03 SPL-151484, SPL-148261 Editing post process search in Edit Search dialog concatenates base search and search edited

Indexer and indexer clustering issues

Date resolved Issue number Description
2018-03-03 SPL-148600, SPL-148969, SPL-151807, SPL-151902 Indexer may crash during hot bucket rolling following a streaming failure
2018-03-01 SPL-151110, SPL-146088, SPL-151808 Clustering creates extra copies of buckets erroneously.

Distributed search and search head clustering issues

Date resolved Issue number Description
2018-04-06 SPL-152002, SPL-146295 Rolling restarts/UI restarts should spawn an external process to initiate shutdown.
2018-04-03 SPL-145346, SPL-128845 Distributed Search: Deployment -- inaccurate Average/Max Time to Reap Dispatch Directory value
2018-04-03 SPL-152627, SPL-130444 SHC: alert suppression may fail during restart if suppression information does not exist locally on member
2018-03-18 SPL-149014, SPL-140413, SPL-146356 SHC captain stops delegating searches to itself after a while when using scheduler_load_based

Universal forwarder issues

Date resolved Issue number Description
2018-04-04 SPL-146190, SPL-149198 Some of the rolled log files read twice by Tailing with copytruncate if monitoring rotated file.

Splunk Web and interface issues

Date resolved Issue number Description
2018-02-23 SPL-148608, SPL-139017 The messages.po file contains French translations of css object when it shouldn't
2018-02-14 SPL-146082, SPL-148873, SPL-148874 Edit Summary Indexing Dialog not working with searches containing subsearches

Windows-specific issues

Date resolved Issue number Description
2018-03-12 SPL-148923, SPL-144368 Splunk UF run out of memory and splunk-winevtlog.exe is not able to re-start

Authentication and Authorization issues

For a list of security issues, please see the Security Advisory. A list of all recent advisories can be found in the Security Portal.

Date resolved Issue number Description
2018-04-10 SPL-153123, SPL-151937 Scripted authentication fails to parse getSearchFilter output, hitting PCRE_ERROR_MATCHLIMIT.

Admin and CLI issues

Date resolved Issue number Description
2018-04-06 SPL-146926, SPL-141771 Starting Splunk via the CLI may fail or cause problems if service runs as a domain user and some storage is on a remote share
2018-04-05 SPL-152207, SPL-145579 chkconfig directive missing for AWS with enable boot-start
2018-04-05 SPL-152849, SPL-147286 Setting DATETIME_CONFIG as filename does not update props.conf
2018-03-13 SPL-151391, SPL-149077 Trailing "/" in "coldToFrozenDir" path will disable custom indexes and allow deletion

Unsorted issues

Date resolved Issue number Description
2018-04-06 SPL-153079, SPL-145094 introspection: IOStats read incorrect if more than one partition created on one physical drive
2018-04-05 SPL-152198, SPL-144080 Splunk Forwarder crashes if EVENT_BREAKER_ENABLE is specified for a WMI input

Uncategorized issues

Date resolved Issue number Description
2018-04-05 SPL-152637, SPL-151165 Crashing thread: HttpDedicatedIoThread-1
2018-03-27 SPL-152435, SPL-151132 PDF export broken with SimpleXML <init> TAG
2018-03-19 SPL-151306, SPL-135274 search assistant incorrectly wrapping kv pairs in quotes
2018-03-05 SPL-148703, SPL-147640 "DatabaseDirectoryManager - Getting size on disk" errors
2018-02-26 SPL-149188, SPL-141808 (Windows Only) Support sslRootCAPath on Windows
PREVIOUS
6.6.8
  NEXT
6.6.6

This documentation applies to the following versions of Splunk® Enterprise: 6.6.7, 6.6.8, 6.6.9, 6.6.10, 6.6.11, 6.6.12


Was this documentation topic helpful?

Enter your email address, and someone from the documentation team will respond to you:

Please provide your comments here. Ask a question or make a suggestion.

You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters