Getting Data In

Release schedule for docker images

platformred
Explorer

What is the release schedule for docker images? It doesn't look as if the version of 7.2 that is patched against the 2020 datetime bug (https://docs.splunk.com/Documentation/Splunk/latest/ReleaseNotes/FixDatetimexml2020) has been released as a docker image.

We have 2 weeks to mitigate this Splunk bug, and it's Christmas, which translates to 3 working days remaining. Can we expect a docker image to be released that we can use?

0 Karma

platformred
Explorer

Not an answer to the question, but I have built our own image of the forwarder which is patched against this bug. This is the Dockerfile I used:
FROM splunk/universalforwarder:7.x.x
LABEL maintainer="your@email.here"
COPY datetime.xml /var/opt/splunk/etc/datetime.xml

0 Karma
Get Updates on the Splunk Community!

Splunk MCP & Agentic AI: Machine Data Without Limits

  Discover how the Splunk Model Context Protocol (MCP) Server can revolutionize the way your organization ...

Finding Based Detections General Availability

Overview  We’ve come a long way, folks, but here in Enterprise Security 8.4 I’m happy to announce Finding ...

Get Your Hands Dirty (and Your Shoes Comfy): The Splunk Experience

Hands-On Learning and Technical Seminars  Sometimes, you just need to see the code. For those looking for a ...