This is not current Splunk documentation.
Splunk 3.4.1 is the latest version. Only use this page with older Splunk 2.0.x.

Splunk Release Notes (Splunk v2.0)

Versions

Version 1.2.5

Version 1.2.5 is a maintenance release.

  • Splunk now allows you to index files that contain more non-ASCII characters.
  • The bash shell has been replaced with sh in scripts for better cross-platform support.
  • The directory monitor provides more detailed reporting of untar and ungzip errors.
  • Timestamps of the form YYYYMMDDHHMMSSSS are now supported.
  • Directory monitor picks up all files after restart.
  • Improved stability of show source.
  • A minor bug that caused typeahead to occasionally miss some events has been fixed.
  • The Directory Monitor will now skip over open files in a directory and continue loading others.
  • All truncated lines in very long (> 10,000 bytes) events now get a meta::truncated descriptor.
  • Splunk Professional's TCP input pipeline (distributed) can now read lines longer than 10,000 bytes.
  • Splunk's FreeBSD version now correctly handles open files in the directory monitor's sinkhole.

Comments

No comments have been submitted.

close

Flash required to play this video.

Click here to download the free Flash Player.

Description:

Permalink: