Splunk Observability Cloud AU0 incident

Users may have issues with login into Splunk Observability and Log Observer Connect using Splunk Unified Identity

Major Resolved View vendor source →

Splunk Observability Cloud AU0 experienced a major incident on January 14, 2026 affecting Splunk Observability Cloud Web Interface and Splunk Log Observer Interface, lasting 2h 57m. The incident has been resolved; the full update timeline is below.

Started
Jan 14, 2026, 03:45 PM UTC
Resolved
Jan 14, 2026, 06:42 PM UTC
Duration
2h 57m
Detected by Pingoru
Jan 14, 2026, 03:45 PM UTC

Affected components

Splunk Observability Cloud Web InterfaceSplunk Log Observer Interface

Update timeline

  1. investigating Jan 14, 2026, 03:45 PM UTC

    Users login with Splunk Unified Identity may have issues accessing Splunk Observability and Log Observer.

  2. investigating Jan 14, 2026, 04:05 PM UTC

    We are continuing to investigate this issue.

  3. identified Jan 14, 2026, 04:48 PM UTC

    Splunk Unified Identity issue has been identified. This will only affect new login session using Splunk Unified Identity, existing login sessions are unaffected. A fix is in progress.

  4. identified Jan 14, 2026, 05:22 PM UTC

    Teams are continuing to work diligently, and progress is being made in applying the fix.

  5. monitoring Jan 14, 2026, 06:30 PM UTC

    A fix has been implemented and we are monitoring the results.

  6. resolved Jan 14, 2026, 06:42 PM UTC

    The incident has been resolved; however, customers may need to clear their browser cache in order to successfully log in.