Splunk® Enterprise

Release Notes

Download manual as PDF

This documentation does not apply to the most recent version of Splunk. Click here for the latest version.
Download topic as PDF

6.6.8

Splunk Enterprise 6.6.8 was released on June 19, 2018.

For information about other security fixes, refer to the Splunk Security Portal.

Issues are listed in all relevant sections. Some issues appear more than once.

Highlighted issues

Date resolved Issue number Description
2018-06-04 SPL-152556, SPL-153959, SPL-155053, SPL-155291 fill_summary_index.py fails in SHC environment

Data input issues

Date resolved Issue number Description
2018-06-04 SPL-155066, SPL-153591 high delay on events from UF after upgrade to (6.6.x)
2018-04-17 SPL-153517, SPL-148346 UF ignores files that are currently being written to

Search issues

Date resolved Issue number Description
2018-05-31 SPL-153432, SPL-154737, SPL-154969, SPL-154970, SPL-155072 The bins option returns inconsistent count values in distributed environment
2018-05-31 SPL-152491, SPL-148796 ui_inactivity_timeout not working even after search completes
2018-05-14 SPL-152810, SPL-141639 6.5.2 Error in chart command: The value for option span is invalid: log10
2018-05-13 SPL-154303, SPL-153349 Scheduling Alerts - Apply Time Range Of Initial Search Not Reflecting when Saving as Alert
2018-05-10 SPL-145560, SPL-153521, SPL-153646, SPL-155091 Splunkd DispatchManager logging is inconsistent
2018-05-09 SPL-143166, SPL-142884 Sort operator sometimes prematurely deletes intermediate files resulting in incomplete search results

Saved search, alerting, scheduling, and job management issues

Date resolved Issue number Description
2018-04-27 SPL-152739, SPL-141223 Documentation to confirm action.populate_lookup.dest in savedsearches.conf does not work with kvstore lookups
2018-04-19 SPL-153148, SPL-148958 tstats will not return any results from an Accelerated Datamodel/Namespace/tscollect job if the raw event has 2-byte characters

Data model and pivot issues

Date resolved Issue number Description
2018-04-19 SPL-153148, SPL-148958 tstats will not return any results from an Accelerated Datamodel/Namespace/tscollect job if the raw event has 2-byte characters

Indexer and indexer clustering issues

Date resolved Issue number Description
2018-05-24 SPL-146575, SPL-147996, SPL-154305, SPL-154353, SPL-154354 RF and SF not being met on CM after adding new Indexes and rolling restart

Distributed search and search head clustering issues

Date resolved Issue number Description
2018-06-15 SPL-154402, SPL-155043, SPL-155808, SPL-155820 SHC: alert suppression may fail during restart due to timing issues
2018-06-04 SPL-154618, SPL-152935 KVStore Replication Error: replSetReconfig got BadValue _id field value of 256 is out of range
2018-05-31 SPL-141363, SPL-149009, SPL-154829, SPL-154830 Indexers report "Unknown search command" for external search commands even though the indexers contain the search bundle with the external command
2018-05-14 SPL-152422, SPL-145554 The savedsearch key/value field is not quoted in SHCMaster log message breaking extraction
2018-04-29 SPL-148106, SPL-153831, SPL-153832, SPL-153833 Crashing thread: TcpChannelThread, Assertion `_slave != __null ClusteringMgr::_slave_writeBucketsToSearch.
2018-04-23 SPL-153219, SPL-152280 Deployer app staging area may miss bundles if preparation takes more than 10 minutes.
2018-04-17 SPL-148542, SPL-147793 During shutdown disable captaincy election

Universal forwarder issues

Date resolved Issue number Description
2018-05-09 SPL-153633, SPL-151229 AIX 7.1 Deployment Server Restarting UF give splunkd; SRC did not 'chssys splunkd' on our behalf: exit code=-1

Distributed deployment, forwarder, deployment server issues

Date resolved Issue number Description
2018-05-09 SPL-148851, SPL-151413, SPL-154007, SPL-154008 Application bundle cache (by default under $SPLUNK_HOME/var/run/tmp/) *never* gets cleaned up on Deployment server even server class no longer exists

Monitoring Console/DMC issues

Date resolved Issue number Description
2018-05-14 SPL-153768, SPL-138918 Mount points are not listed correctly in "Average I/O Usage and Performance" panel of Monitoring Console

Splunk Web and interface issues

Date resolved Issue number Description
2018-05-31 SPL-153432, SPL-154737, SPL-154969, SPL-154970, SPL-155072 The bins option returns inconsistent count values in distributed environment
2018-05-31 SPL-152491, SPL-148796 ui_inactivity_timeout not working even after search completes
2018-05-14 SPL-152810, SPL-141639 6.5.2 Error in chart command: The value for option span is invalid: log10
2018-05-13 SPL-154303, SPL-153349 Scheduling Alerts - Apply Time Range Of Initial Search Not Reflecting when Saving as Alert
2018-05-10 SPL-145560, SPL-153521, SPL-153646, SPL-155091 Splunkd DispatchManager logging is inconsistent
2018-05-09 SPL-143166, SPL-142884 Sort operator sometimes prematurely deletes intermediate files resulting in incomplete search results

Windows-specific issues

Date resolved Issue number Description
2018-04-24 SPL-153191, SPL-151800 Windows Registry Monitoring Input is ignoring the _TCP_ROUTING setting

Rest, Simple XML, and Advanced XML issues

Date resolved Issue number Description
2018-06-04 SPL-152556, SPL-153959, SPL-155053, SPL-155291 fill_summary_index.py fails in SHC environment
2018-05-30 SPL-154839, SPL-153655 /services/search/jobs/*/results is responding with duplicate JSON field 'init_offset' when output_mode is 'json_cols' and search has no result

Authentication and Authorization issues

For a list of security issues, please see the Security Advisory. A list of all recent advisories can be found in the Security Portal.

Date resolved Issue number Description
2018-05-14 SPL-154258, SPL-153851 Scripted authentication failing in Windows with 'insufficient permission to access this resource'.

Unsorted issues

Date resolved Issue number Description
2018-06-04 SPL-154618, SPL-152935 KVStore Replication Error: replSetReconfig got BadValue _id field value of 256 is out of range
2018-05-09 SPL-153937, SPL-151228 Add suppression state file listing to splunk diag.

Uncategorized issues

Date resolved Issue number Description
2018-05-22 SPL-153668, SPL-153916, SPL-154368, SPL-154369 When exporting to PDF one particular IP Address generates an error while others work
2018-05-22 SPL-145371, SPL-151896, SPL-154014, SPL-154015 Bulletin board message timestamp incorrect on SHC members
2018-04-24 SPL-146247 RT search on S&R page returns a count of results, then never updates
2018-04-14 SPL-152761, SPL-151501 Enabling/Disabling acceleration for a data model creates an unnecessary copy of the data model JSON in <appname>/local/data/models/<model>.json
PREVIOUS
6.6.9
  NEXT
6.6.7

This documentation applies to the following versions of Splunk® Enterprise: 6.6.8, 6.6.9, 6.6.10, 6.6.11, 6.6.12


Was this documentation topic helpful?

Enter your email address, and someone from the documentation team will respond to you:

Please provide your comments here. Ask a question or make a suggestion.

You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters