Hey Splunky people! We are excited to share the latest updates in Splunk Cloud Platform 9.3.2408. In this release we have many awaited features and enhancements for both analysts and admins, helping you further your organizational progress toward digital resilience.
Showing you guided insights - detecting threats and issues with context
Federated Analytics on Amazon Security Lake: This premium add-on feature allows admins and security teams to use Federated Analytics to analyze data wherever it resides, in Splunk or Amazon Security Lake, for investigations, detections and threat hunting. This enables your team to leverage the low cost of data lake storage and bring in select data on-demand into Splunk which helps reduce the limitations of data silos and enables a thorough exploration of data to uncover potential threats. Want to learn more? Read the dedicated launch blog about Federated Analytics.
Powering you with foundational visibility - to see across your environments
Federated Search for Amazon S3: This enhancement simplifies AWS schema setup for common sourcetypes (e.g., CloudTrail, VPC Flow), streamlining access to key AWS data. This automation enables faster, more consistent monitoring and analysis across environments, enhancing security operations with broader, easier access to relevant insights.
Splunk Observability Cloud metrics in Splunk Cloud Platform: Enables customers to leverage Splunk Observability Cloud’s powerful metric store by bringing real-time metrics into Splunk Dashboard Studio for a centralized charting experience. Users can now have streaming metrics alongside existing SPL-based charts for a single pane of glass across logs and metrics.
Enhanced dashboard usability and performance
Version History: Dashboard Studio now includes version history, allowing users to save, compare, and revert to previous dashboard versions for more flexible iteration and collaboration.
Saved Searches Integration: Users can now browse and add saved searches directly within Dashboard Studio, streamlining access to essential data.
Improved Rendering Performance: Charts with timeseries or numerical data now render faster, enhancing the dashboard experience for users working with complex data.
There are additional updates and enhancements that we’ve released that provide platform stability (KVStore Upgrade to 7.0) and enhanced user experience, supporting the overall usability and performance of Splunk Cloud Platform.
Check out the 9.3.2408 release notes for additional details.
Python 2 is in the process of complete removal and soon will no longer be available in coming releases
jQuery v3.5 library is now set as the platform default; prior jQuery libraries are no longer supported
... View more