Splunk Observability Cloud AU0 incident
Intermittent issues with login to Observability Cloud Web Interface and with datapoint ingest
Splunk Observability Cloud AU0 experienced a major incident on November 26, 2025 affecting Datapoint Ingest and Splunk Observability Cloud Web Interface, lasting 1h 57m. The incident has been resolved; the full update timeline is below.
Affected components
Update timeline
- investigating Nov 26, 2025, 08:26 PM UTC
Datapoint ingest may be affected. We are investigating and will provide an update shortly.
- investigating Nov 26, 2025, 09:01 PM UTC
We are currently investigating intermittent issues impacting login to the Splunk Observability Cloud web interface, as well as degraded datapoint ingest in the AU0 region. Our engineering teams are actively engaged, and we will provide the next update shortly.
- identified Nov 26, 2025, 09:12 PM UTC
We have identified the underlying issue affecting the Splunk Observability Cloud in the AU0 region. Login functionality has largely recovered, and customers should now see successful access to the web interface. Work is ongoing to fully stabilize the service and restore healthy datapoint ingest. Our teams are actively implementing remediation steps, and we will provide the next update as soon as more information is available.
- monitoring Nov 26, 2025, 09:42 PM UTC
Login and datapoint ingest in the AU0 region have recovered. Some datapoints may still experience delays, but latency is trending down quickly. We are continuing to monitor the region as the system stabilizes further and will provide an update once full recovery is confirmed.
- resolved Nov 26, 2025, 10:24 PM UTC
The issues affecting login access and datapoint ingest in the AU0 region have been fully resolved. All functionality is operating normally, and no further impact is expected. Thank you for your patience.