3.0 Beta 3
This documentation does not apply to the most recent version of Splunk.
This documentation applies to the following versions of Splunk:
3.0 , 3.0.1 , 3.0.2
3.0 Beta 3
New features
- Splunk will alert if you are using an unsupported browser
- Splunk will alert if you are using an unsupported version of Flash
- Searching for * will produce the same results as searching for meta::all
- TAI64 timestamp support
- Alert feeds and the links included in email now support https
- LDAP supports specifying multiple base DNs
Resolved issues from 3.0 beta 2
- When Splunk receives data from a UDP input it will no longer perform a reverse lookup on each connection attempt
- UDP inputs no longer distort the host:: value
- Host and eventtype tagging are now supported
- Sourcetype aliasing supported
- LDAP authentication always requires username and password (even if the LDAP server allows anonymous binds)
- Users can delete a saved search via SplunkWeb
- Typeahead selection is working again
- In-product help now has content
- Saved Searches respect time constraints
- Multiple memory and performance improvements implemented
- User passwords can contain XML reserved characters and not collide with scheduled alerts
New issues in this release
- 64 bit RPM packages will not install without the
--nodeps flag on systems that don't have the db4-4.2x (an RHEL4/FC4 package) installed. RHEL5 and CentOS 5 are two platforms that will likely have this problem
- We have seen instances where setting an RSS alert may cause a crash on 64bit systems
- maxresults:: is not respected in search strings from the gui, set the Max results per search value in the Search Preferences dialog box instead. The default value is 10,000