Splunk Search

What are the main differences between Splunk 6.3.1 and 6.3.2?

preotesoiu
Path Finder

Hello,

In December 2015, Splunk issued a minor upgrade (6.3.2) which is fixing bugs.
Currently we have Splunk 6.3.1 installed and I'm trying to determine the major differences between these two minor releases in order to asses if an upgrade is necessary.

What are the main advantages of using 6.3.2 instead of 6.3.1?

Thanks

0 Karma
1 Solution

frobinson_splun
Splunk Employee
Splunk Employee

Hi @preotesoiu,
This documentation with details on the 6.3.2 release might help:
http://docs.splunk.com/Documentation/Splunk/6.3.2/ReleaseNotes/6.3.2

View solution in original post

kmanson
Path Finder

We run Splunk and Enterprise Security ES 4.0.1 and noticed CPU utilization drop 50% on our indexers with 6.3.1 --> 6.3.2 and then again 50% when upgrading from 6.3.2--> 6.3.3. We have multiple separate environments and all had the same results. Anyone else seeing performance increases?

6.3.2-->6.3.3 CPU utilization

renems
Communicator
0 Karma

preotesoiu
Path Finder

yes, saw that yesterday. thank you.
G

0 Karma

gyslainlatsa
Motivator
0 Karma

piebob
Splunk Employee
Splunk Employee

I downvoted this post because this did not answer the question asked.

0 Karma

renems
Communicator

I wouldn't put too many effort in migrating to 6.3.2. unless you have a specific issue that is solved. Other then some bugfixing, you shouldn't expect too much. (since you're already on 6.3.1). Won't hurt you either though.

0 Karma

frobinson_splun
Splunk Employee
Splunk Employee

Hi @preotesoiu,
This documentation with details on the 6.3.2 release might help:
http://docs.splunk.com/Documentation/Splunk/6.3.2/ReleaseNotes/6.3.2

burwell
SplunkTrust
SplunkTrust

Our reason to upgrade to 6.3.2 is that we have a lot of alerts created by user Admin that were emailed out to Admin and Power users. Our Power users stopped being able to click on the alert results.

6.3.2 fixed this bug.

"Power user having read and write permissions for a saved search owned by an admin user is unable to view results from scheduled email"

Get Updates on the Splunk Community!

Index This | I am a number, but when you add ‘G’ to me, I go away. What number am I?

March 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...

What’s New in Splunk App for PCI Compliance 5.3.1?

The Splunk App for PCI Compliance allows customers to extend the power of their existing Splunk solution with ...

Extending Observability Content to Splunk Cloud

Register to join us !   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to ...