Resolved issues
The following issues are resolved in Splunk Stream 7.1.1:
Defect | Description |
---|---|
STREAM-3722 | Stream not recognizing SQL queries from a MySQL stream. |
STREAM-3714 | "DPI exception" code is not logged correctly. |
STREAM-3703 | If multiple HTTP streams are doing file extraction on the same flow, only one will have extracted files in its events. |
STREAM-3692 | If multiple HTTP streams are doing file extraction on the same flow, only one will have extracted files in its events. |
STREAM-3680 | Streamfwd crashes on pcaps. |
STREAM-3679 | Invalid cast to PcapPacketProcessor instead of PacketProcessorBase. |
STREAM-3677 | Streamfwd takes a long time to stop. |
STREAM-3674 | File extraction is enabled for smtp even though the field is disabled in the stream. |
STREAM-3672 | Sensitive data stored in log files. |
STREAM-3671 | HTTPS not enforced. |
STREAM-3667 | sql parsing should be done only if affected_tables/sql_statement fields are enabled. |
STREAM-3663 | Targeted packet capture does not work with -r option on TA install. |
STREAM-3658 | SQL parser generates duplicate entries for TDS queries. |
STREAM-3652 | Streamfwd terminates with no error reporting if run in dedicated mode. |
STREAM-3651 | Streamfwd disables kernel netrowking on all DPDK-compatible interfaces that don't have active routes, regardless of streamfwdcapture.N.interface setttings |
STREAM-3595 | Dedicated stream forwarder sends stats events from both streamfwd and streamfwd-rhel6. |
STREAM-3584 | Stream is not collecting all DNS data in test environment. |
STREAM-3547 | /indexers REST endpoint fails with a 500 error when the hosting Splunk instance isn't using default ports. |
STREAM-3545 | Distributed Forwarder Management > Install Stream Forwarders > View Configuration link may cause a "Page not found error" on SHC. |
STREAM-3512 | Stream Forwarder appears to hang if files appear in monitored directory without .pcap extension. |
STREAM-3158 | Product tour is not functioning properly. |
STREAM-2592 | For the builds, splunk_app_stream folder gets erased once installation is complete. |
New features | Known issues |
This documentation applies to the following versions of Splunk Stream™: 7.1.1
Feedback submitted, thanks!