Getting Data In

Release schedule for docker images

platformred
Explorer

What is the release schedule for docker images? It doesn't look as if the version of 7.2 that is patched against the 2020 datetime bug (https://docs.splunk.com/Documentation/Splunk/latest/ReleaseNotes/FixDatetimexml2020) has been released as a docker image.

We have 2 weeks to mitigate this Splunk bug, and it's Christmas, which translates to 3 working days remaining. Can we expect a docker image to be released that we can use?

0 Karma

platformred
Explorer

Not an answer to the question, but I have built our own image of the forwarder which is patched against this bug. This is the Dockerfile I used:
FROM splunk/universalforwarder:7.x.x
LABEL maintainer="your@email.here"
COPY datetime.xml /var/opt/splunk/etc/datetime.xml

0 Karma
Get Updates on the Splunk Community!

Threat Hunting Unlocked: How to Uplevel Your Threat Hunting With the PEAK Framework ...

WATCH NOWAs AI starts tackling low level alerts, it's more critical than ever to uplevel your threat hunting ...

Splunk APM: New Product Features + Community Office Hours Recap!

Howdy Splunk Community! Over the past few months, we’ve had a lot going on in the world of Splunk Application ...

Index This | Forward, I’m heavy; backward, I’m not. What am I?

April 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...