Skip to content

Release notes for the Splunk Add-on for Microsoft Windows

Version 9.1.1 of the Splunk Add-on for Microsoft Windows was released on November 11, 2025.

Note

The Splunk Add-on for Windows DNS version 1.0.1 and the Splunk Add-on for Windows Active Directory version 1.0.0 are not supported when installed alongside the Splunk Add-on for Microsoft Windows versions 6.0.0 and higher. The Splunk Add-on for Microsoft Windows versions 6.0.0 and higher includes the Splunk Add-on for Windows DNS and the Splunk Add-on for Microsoft Active Directory.

Fixes

  • Updated the lookup stanza name from tcp_flag_lookup to tcp_flag_firewall_logs_lookup to fix the issue of the lookup not being loaded alongside the AWS Add-on that uses the same lookup stanza name.

Note

This release fixes the issue with lookup errors after upgrading to Windows Add-on v9.1.0 alongside AWS Add-on. If you are using Windows Add-on v9.1.0, upgrade it to v9.1.1 to avoid lookup errors.

Compatibility

Version 9.1.1 of the Splunk Add-on for Microsoft Windows is compatible with the following software, CIM versions, and platforms:

Splunk platform versions 9.2.x, 9.3.x, 9.4.x, 10.0.x
CIM 4.15 and later
Platform Windows
Vendor Products Windows Server 2025, Windows Server 2022, Windows 11, Windows Server 2019, Windows 8.1, Windows 10, Windows Server 2012/2012 R2, Windows Server 2016, Microsoft Active Directory, Microsoft Windows DNS Server

Fixed issues

Version 9.1.1 of the Splunk Add-on for Microsoft Windows fixes the following issues:

Known issues

Version 9.1.1 of the Splunk Add-on for Microsoft Windows contains the following, if any, known issues: