Splunk® Enterprise

Release Notes

Acrobat logo Download manual as PDF

Splunk Enterprise version 7.3 is no longer supported as of October 22, 2021. See the Splunk Software Support Policy for details. For information about upgrading to a supported version, see How to upgrade Splunk Enterprise.
This documentation does not apply to the most recent version of Splunk. Click here for the latest version.
Acrobat logo Download topic as PDF

Fixed issues

Splunk Enterprise

Splunk Enterprise was released on September 2, 2020. This release fixes the following issue:

Date resolved Issue number Description
2020-08-09 SPL-193332, SPL-194209, SPL-194243, SPL-194257, SPL-194326, SPL-194252, SPL-193497, SPL-194202 After upgrade the splunk user needs the "admin_all_objects" capability to send email alert.

Splunk Enterprise 7.3.7

Splunk Enterprise 7.3.7 was released on August 17, 2020. This release includes fixes for the following issues.

Issues are listed in all relevant sections. Some issues might appear more than once. To check for additional security issues related to this release, visit the Splunk Security Portal.

Data input issues

Date resolved Issue number Description
2020-07-24 SPL-191789, SPL-191251 search_telemetry.json not populating sourcetypes on distributed searches

Search issues

Date resolved Issue number Description
2020-08-04 SPL-188997, SPL-191847, SPL-192269 Search performance degradation with chained lookups
2020-07-30 SPL-190537, SPL-180256 fields extracted with modular regex show incomplete required fields list in smartmode for transforming or non-streaming commands , producing no results found
2020-07-21 SPL-191092, SOLNESS-23254, SPL-191252, SPL-191676 sendalert failed as results.csv.gz was not found
2020-07-17 SPL-191813, SPL-186721 Use namespaced fetch requests on saved searches page
2020-06-30 SPL-186002, SPL-183436 Index Time Extraction Padding Checksum
2020-06-25 SPL-188511, SPL-153652 srchTimeWin in authorize.conf not applied (when et,lt is specified in the search string) to Fast or Smart or Verbose mode search when configured
2020-06-18 SPL-189543, SPL-185657 bin command does not work correctly
2020-05-31 SPL-186735, SPL-188481, SPL-189147 Renaming sourcetypes on search time causing performance impact

Saved search, alerting, scheduling, and job management issues

Date resolved Issue number Description
2020-07-21 SPL-191092, SOLNESS-23254, SPL-191252, SPL-191676 sendalert failed as results.csv.gz was not found

Charting, reporting, and visualization issues

Date resolved Issue number Description
2020-07-28 SPL-192575, SPL-191721 cloud windows user getting Uncaught Invariant Violation: Minified React error #185 when editing dashboard

Indexer and indexer clustering issues

Date resolved Issue number Description
2020-07-28 SPL-189158, SPL-184341 S2 Smartstore :Indexer cluster not recovering when decommissioning indexers greater than or equal to SF/RF
2020-06-29 SPL-188562, SPL-189973, SPL-191346, SPL-191445 Indexers crashes: Crashing thread: cachemanagerDownloadExecutorWorker-318 fails on assertion: `_groups_remaining > 0'

Distributed search and search head clustering issues

Date resolved Issue number Description
2020-08-11 SPL-186803, SPL-188807, SPL-188977 One SHC member has stuck at Restarting during rolling restart
2020-06-03 SPL-188575, SPL-190621, SPL-189105, SPL-189811 SHC scheduled dispatched the same scheduled-indextime-rt search 3 times - impact on ITSI

Universal forwarder issues

Date resolved Issue number Description
2020-07-29 SPL-191773, SPL-165635 splunk not reading file after log rotation

Windows-specific issues

Date resolved Issue number Description
2020-07-20 SPL-190166, SPL-190667, SPL-191296 <daf> - App context option not working properly while creating Windows Inputs
2020-06-24 SPL-191082, SPL-167767 perfmon: useEnglishOnly set to true has no effect

Authentication and authorization issues

Date resolved Issue number Description
2020-08-13 SPL-188699, SPL-185854 Scheduled Searches with Custom triggers on SAML causing user="nobody" had no roles
2020-07-15 SPL-174782, SPL-191594, SPL-191770 SAML Config Error When Optional Field is Empty

Uncategorized issues

Date resolved Issue number Description
2020-07-31 SPL-177344, SPL-170703 splunkd.log "ERROR SearchParser - Missing a search command before '*'" error message without context
2020-06-24 SPL-183454, SPL-184739, SPL-190313 slash character present in sourcetype prevents editing of Field Extractions
2020-06-11 SPL-186369, SPL-155296 Bucket moving operation is hang up when data expiring in the situation bucket size is larger than index size limit
2020-05-31 SPL-184315, SPL-184838, SPL-186483 Search Head Cluster Member appending splunk.secret with contents from memory
2020-05-21 SPL-189124 KVstore will not start after upgrade to 7.3.5 Windows machine
Last modified on 11 November, 2020
Timestamp recognition of dates with two-digit years fails beginning January 1, 2020
Deprecated and removed in version 7.3

This documentation applies to the following versions of Splunk® Enterprise: 7.3.7

Was this documentation topic helpful?

You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters