Release notes for the Splunk Add-on for Windows
Version 5.0.1 of the Splunk Add-on for Windows was released on August 29, 2018.
The Splunk Add-on for Windows 5.0.0 introduced breaking changes. If you are upgrading from a version of the Splunk Add-on for Windows that is earlier than 5.0.0, you must follow the steps outlined in Upgrade the Splunk Add-on for Windows. Failure to do so can result in data loss.
Version 5.0.1 of the Splunk Add-on for Windows is compatible with the following software, CIM versions, and platforms:
|Splunk platform versions||6.6.x, 7.0.x, 7.1.x, 7.2.x|
|Vendor Products||Windows 8, Windows 8.1, Windows 10, Windows Server 2008 R2, Windows Server 2012/2012 R2, Windows Server 2016|
The Splunk Add-on for Windows 5.0.1 is not compatible with the Splunk App for Windows Infrastructure version 1.4.4 and the Splunk App for Microsoft Exchange version 3.4.4. Use the Splunk Add-on for Windows 4.8.4 if you want to use either of these apps.
New or changed features
Version 5.0.1 of the Splunk Add-on for Windows has the following new or changed features:
- Improved load balancing on the universal forwarder
- Decoding of User Account Control values for Microsoft Active Directory
- Functionality to normalize inappropriate values in
WinEventLogevents using the
- A scripted input for collecting local IP configurations
Version 5.0.1 of the Splunk Add-on for Windows fixes the following issues:
|Date resolved||Issue number||Description|
|2018-08-06||ADDON-18850||TA-Windows is sending Wineventlog data with a different host format|
Version 5.0.1 of the Splunk Add-on for Windows contains the following known issues. If no issues appear below, no issues have yet been reported:
|Date filed||Issue number||Description|
|2018-09-06||ADDON-19338||Data duplication issue in WindowsUpdate.Log|
|2016-04-19||ADDON-9162||Field extraction for Account Domain extracts multiple values|
Source types for the Splunk Add-on for Windows
Hardware and software requirements for the Splunk Add-on for Windows
This documentation applies to the following versions of Splunk® Add-on for Windows: 5.0.1