All Apps and Add-ons

DECRYPT version 2.2 - why is local=true in commands.conf?

gjanders
SplunkTrust
SplunkTrust

Quick question regarding version 2.2 of DECRYPT https://splunkbase.splunk.com/app/2655/

Why does the commands.conf have a local=true under the decrypt command?

It did not have this previously and it still has streaming=true...

Thanks

Labels (1)
Tags (2)
1 Solution

mjz
Explorer

It shouldn't have been set. This has been fixed in 2.2.1.

View solution in original post

inventsekar
SplunkTrust
SplunkTrust
local = [true|false]
* If set to "true", specifies that the command should be run on the search head only.
* Default: false

 https://docs.splunk.com/Documentation/Splunk/8.0.6/Admin/Commandsconf

 

It shouldn't have been set. This has been fixed in 2.2.1 <<<

meaning, @mjz , the document needs an update, pls suggest.

thanks and best regards,
Sekar

PS - If this or any post helped you in any way, pls consider upvoting, thanks for reading !
0 Karma

mjz
Explorer

It shouldn't have been set. This has been fixed in 2.2.1.

gjanders
SplunkTrust
SplunkTrust

Thanks, I had already put in an override into the local directory but I'll upgrade to 2.2.1 soon

0 Karma
Get Updates on the Splunk Community!

Accelerating Observability as Code with the Splunk AI Assistant

We’ve seen in previous posts what Observability as Code (OaC) is and how it’s now essential for managing ...

Integrating Splunk Search API and Quarto to Create Reproducible Investigation ...

 Splunk is More Than Just the Web Console For Digital Forensics and Incident Response (DFIR) practitioners, ...

Congratulations to the 2025-2026 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...