Cisco-AMP / amp4e_splunk_events_input

BSD 2-Clause "Simplified" License
8 stars 12 forks source link

Update changelog for 1.1.8 release #46

Closed pschulze closed 4 years ago

pschulze commented 4 years ago

When testing upgrading from 1.1.7 to 1.1.8, despite bumping the build number in the app.conf file, Splunk was still serving static files from 1.1.7 after upgrading.

This can lead to seeing errors like Warning! It appears your configuration is incomplete, so you will not be able to create any inputs. Please update your configuration. and the application not working in general.

To make sure this doesn't happen, I've added instructions that immediately following upgrading the app, user's should use the Splunk _bump endpoint to manually invalidate the JS cache.

There's no issues when installing the app fresh.

samsonnguyen commented 4 years ago

the _bump endpoint is documented by splunk and should be available for use

https://docs.splunk.com/Documentation/Splunk/6.0.4/AdvancedDev/CustomizationOptions