Fixed issues
Splunk Enterprise 9.1.7 was released on November 7, 2024. This release includes fixes for the following issues.
Issues are listed in all relevant sections. Some issues might appear more than once.
Saved search, alerting, scheduling, and job management issues
Date resolved
|
Issue number
|
Description
|
2024-09-24 |
SPL-262991, SPL-259288 |
Revert - - Low Privileges user is able to modify dispatchAs field from Owner to User
|
2024-08-29 |
SPL-259288, SPL-254139, SPL-262991 |
Low Privileges user is able to modify dispatchAs field from Owner to User
|
Universal forwarder issues
Date resolved
|
Issue number
|
Description
|
2025-03-12 |
SPL-248479, SPL-253092 |
Forwarders enter a state of constant blocking, and Splunk Cloud indexers might fail to process events. This can result in the events being sent to a non-searchable queue, the Dead Letter Queue (DLQ), due to a Persistent Queue issue with the S2S protocol
|
Windows-specific issues
Date resolved
|
Issue number
|
Description
|
2024-09-06 |
SPL-262273, SPL-262271 |
Fix perfmon counter capped at 100
|
Uncategorized issues
Date resolved
|
Issue number
|
Description
|
2024-09-11 |
SPL-260038, SPL-257330 |
Fix the security vulnerabilites
|
2024-08-28 |
SPL-258019, SPL-261246, SPL-261247 |
User 'nobody' should be excluded from check when SAML settings applies
|
Feedback submitted, thanks!