Splunk® Enterprise

Release Notes

Acrobat logo Download manual as PDF


Splunk Enterprise version 8.1 will no longer be supported as of April 19, 2023. See the Splunk Software Support Policy for details. For information about upgrading to a supported version, see How to upgrade Splunk Enterprise.
This documentation does not apply to the most recent version of Splunk® Enterprise. For documentation on the most recent version, go to the latest release.
Acrobat logo Download topic as PDF

Fixed issues

Splunk Enterprise 8.1.8 was released on January 18, 2022. This release includes fixes for the following issues.

Issues are listed in all relevant sections. Some issues might appear more than once.

Indexer and indexer clustering issues

Date resolved Issue number Description
2021-11-03 SPL-208136, SPL-212205, SPL-214177 Multisite indexer cluster - duplicated events returned when using assign_primaries_to_all_sites=false
2021-11-03 SPL-210523, SPL-212851, SPL-214213 Splunk search with 'delete' command on multisite indexer cluster cannot delete events.

Distributed search and search head clustering issues

Date resolved Issue number Description
2021-11-03 SPL-208136, SPL-212205, SPL-214177 Multisite indexer cluster - duplicated events returned when using assign_primaries_to_all_sites=false

Monitoring Console issues

Date resolved Issue number Description
2021-11-17 SPL-214379, SPL-215268, SPL-215269 The Bucket Health Report can inherit the severity from another index, and misreport the severity for a different index

REST, Simple XML, and Advanced XML issues

Date resolved Issue number Description
2021-11-22 SPL-214703, SPL-213950 EPS drops after upgrade as a result of default 50k export cap in limits.conf

Admin and CLI issues

Date resolved Issue number Description
2021-11-15 SPL-212181, SPL-204953 A vCPU license is subject to conditional license enforcement

Uncategorized issues

Date resolved Issue number Description
2021-11-23 SPL-212200, SPL-214114, SPL-214937 Heavy Forwarder crashed with Crashing thread TcpOutEloop : Splunk version 8.1.4
Last modified on 02 March, 2022
PREVIOUS
Field alias behavior change
  NEXT
Deprecated and removed in version 8.1

This documentation applies to the following versions of Splunk® Enterprise: 8.1.8


Was this documentation topic helpful?


You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters