Releases: Cisco-AMP/amp4e_splunk_events_input
Releases · Cisco-AMP/amp4e_splunk_events_input
Release v2.0.3
Merge pull request #88 from Cisco-AMP/develop Release v2.0.3
Release v2.0.2
Merge pull request #76 from Cisco-AMP/develop develop -> master for release workflow fix
Release v2.0.1
Allow create-release step to continue on error
Release v2.0.0
Merge pull request #62 from Cisco-AMP/develop v2.0.0
v1.1.8 - Splunk 7.3 Cloud Release
Adds Support for Splunk Cloud 7.3 by fixing appinspect errors preventing Splunk Cloud certification.
- Converts api key from unsecured to secured using Splunk's storage passwords API
- Creating a new input configuration and stream will not save the api key in your input.conf file
- To migrate your existing app and input configurations:
- Make sure you have your API ID and key written down or copied to a file before installation
- Install version 1.1.8 of the app
- Restart Splunk
- Visit https://<your splunk address>/en-US/_bump and click the 'Bump version' button
- Your app config will be automatically updated when visiting the inputs page
- If you see the error message Warning! It appears your configuration is incomplete, so you will not be able to create any inputs. Please update your configuration. when first visiting the page after updating, try refreshing
- If that doesn't work, visit the configuration page and ensure your configuration is correct
- To update the config for your inputs, visit the Inputs page of the app and click on the name of each of your inputs to edit them, then click the 'Save' button
- Your API key will now only be stored using Splunk's storage passowrds API and will no longer be stored in the inputs.conf file
- When installing this app for the first time, no special action needs to be taken