Splunk Search

What are the main differences between Splunk 6.3.1 and 6.3.2?

preotesoiu
Path Finder

Hello,

In December 2015, Splunk issued a minor upgrade (6.3.2) which is fixing bugs.
Currently we have Splunk 6.3.1 installed and I'm trying to determine the major differences between these two minor releases in order to asses if an upgrade is necessary.

What are the main advantages of using 6.3.2 instead of 6.3.1?

Thanks

0 Karma
1 Solution

frobinson_splun
Splunk Employee
Splunk Employee

Hi @preotesoiu,
This documentation with details on the 6.3.2 release might help:
http://docs.splunk.com/Documentation/Splunk/6.3.2/ReleaseNotes/6.3.2

View solution in original post

kmanson
Path Finder

We run Splunk and Enterprise Security ES 4.0.1 and noticed CPU utilization drop 50% on our indexers with 6.3.1 --> 6.3.2 and then again 50% when upgrading from 6.3.2--> 6.3.3. We have multiple separate environments and all had the same results. Anyone else seeing performance increases?

6.3.2-->6.3.3 CPU utilization

renems
Communicator
0 Karma

preotesoiu
Path Finder

yes, saw that yesterday. thank you.
G

0 Karma

gyslainlatsa
Motivator
0 Karma

piebob
Splunk Employee
Splunk Employee

I downvoted this post because this did not answer the question asked.

0 Karma

renems
Communicator

I wouldn't put too many effort in migrating to 6.3.2. unless you have a specific issue that is solved. Other then some bugfixing, you shouldn't expect too much. (since you're already on 6.3.1). Won't hurt you either though.

0 Karma

frobinson_splun
Splunk Employee
Splunk Employee

Hi @preotesoiu,
This documentation with details on the 6.3.2 release might help:
http://docs.splunk.com/Documentation/Splunk/6.3.2/ReleaseNotes/6.3.2

burwell
SplunkTrust
SplunkTrust

Our reason to upgrade to 6.3.2 is that we have a lot of alerts created by user Admin that were emailed out to Admin and Power users. Our Power users stopped being able to click on the alert results.

6.3.2 fixed this bug.

"Power user having read and write permissions for a saved search owned by an admin user is unable to view results from scheduled email"

Get Updates on the Splunk Community!

What's new in Splunk Cloud Platform 9.1.2312?

Hi Splunky people! We are excited to share the newest updates in Splunk Cloud Platform 9.1.2312! Analysts can ...

What’s New in Splunk Security Essentials 3.8.0?

Splunk Security Essentials (SSE) is an app that can amplify the power of your existing Splunk Cloud Platform, ...

Let’s Get You Certified – Vegas-Style at .conf24

Are you ready to level up your Splunk game? Then, let’s get you certified live at .conf24 – our annual user ...