Skip to content

3.0.7

Choose a tag to compare

@gjanders gjanders released this 29 Jun 02:43
· 34 commits to master since this release

New macros:

  • sysloghosts

New reports:

  • SearchHeadLevel - Knowledge Bundle contents
  • syslog-ng - cache statistics summary - as contributed by Marc Andersen, company: NIL815 ApS

Updated dashboards:

  • splunk_forwarder_output_tuning - added fillnull for ingest_pipe

Updated alerts:

  • AllSplunkLevel - No recent metrics.log data - updated to use prestats
  • AllSplunkLevel - TCP Output Processor has paused the data flow - updated criteria
  • AllSplunkEnterpriseLevel - ulimit on Splunk enterprise servers is below 8192 - now 64,000 (could be renamed in future)
  • AllSplunkEnterpriseLevel - Splunkd Log Messages Admins Only - updated criteria
  • ForwarderLevel - Splunk universal forwarders with ulimit issues - updated keywords
  • SearchHeadLevel - Scheduled Searches That Cannot Run - excluded the require command
  • SearchHeadLevel - Detect MongoDB errors - updated to use prestats, added _time field
  • SearchHeadLevel - SHC Captain unable to establish common bundle - added new criteria
  • SearchHeadLevel - Search Messages user level - updated criteria