Product News & Announcements
All the latest news and announcements about Splunk products. Subscribe and never miss an update!

What's New in Splunk Enterprise 9.4: Features to Power Your Digital Resilience

kwheeler
Splunk Employee
Splunk Employee

Hey Splunky People! We are excited to share the latest updates in Splunk Enterprise 9.4. In this release we have many awaited features and enhancements for both analysts and admins, helping you further your organizational progress toward digital resilience. 

Comprehensive Visibility

  • Deployment Server 9.4 Enhancements: Provides a centralized interface to manage and troubleshoot Splunk agents, with a new UI for improved user experience and accessibility compliance.
  • Health and Status Overview: New capabilities for monitoring the health and status of agents, enhancing visibility into deployment.
  • Federated Search for Splunk: Enhanced support for metric indexes and eventcount across modes, improving visibility into remote Splunk platforms.
  • Dashboard Studio Enhancements: Updates to Dashboard Studio for better visualization and insights. Read what’s new. 
  • SPL2 Public Beta: Offers flexibility for custom app development, enhancing control over the Splunk ecosystem.

Rapid Detection & Investigation

  • Enhanced Search Commands: Updates to the foreach command and support for mcatalog in federated searches, facilitating more effective search capabilities.
  • Eval Function Enhancements: New functions for data type conversion and type testing, aiding in efficient data manipulation and investigation.
  • Eliminate SHC Out-of-Sync Issues: Improved SHC replication to reduce errors and streamline search head cluster management.

Optimized Response

  • Quarantine of Large CSV Lookups: Automatic quarantining of large lookups to prevent replication issues, ensuring smoother operations.
  • Workload Management with cgroups v2: Support for Linux cgroups version 2, optimizing resource management and response efficiency.

There are additional updates and enhancements that we’ve released that provide platform stability (KVStore Upgrade to 7.0) and enhanced user experience, supporting the overall usability and performance of Splunk Enterprise. 

Check out the 9.4 release notes for additional details. 

Python 2 is in the process of complete removal and soon will no longer be available in coming releases

jQuery v3.5 library is now set as the platform default; prior jQuery libraries are no longer supported

Tags (1)
Get Updates on the Splunk Community!

Dashboards: Hiding charts while search is being executed and other uses for tokens

There are a couple of features of SimpleXML / Classic dashboards that can be used to enhance the user ...

Splunk Observability Cloud's AI Assistant in Action Series: Explaining Metrics and ...

This is the fourth post in the Splunk Observability Cloud’s AI Assistant in Action series that digs into how ...

Brains, Bytes, and Boston: Learn from the Best at .conf25

When you think of Boston, you might picture colonial charm, world-class universities, or even the crack of a ...