Splunk incident

Lookups failing for KVService | CINC - 62975 | Major Outage

Major Resolved View vendor source →

Splunk experienced a major incident on October 24, 2025 affecting Search and Index, lasting 15h 18m. The incident has been resolved; the full update timeline is below.

Started
Oct 24, 2025, 03:42 PM UTC
Resolved
Oct 25, 2025, 07:00 AM UTC
Duration
15h 18m
Detected by Pingoru
Oct 24, 2025, 03:42 PM UTC

Affected components

SearchIndex

Update timeline

  1. investigating Oct 24, 2025, 03:42 PM UTC

    We are investigating a potential issue with KVService, that may impact several Splunk cloud platform customers in eu-central-1. As a result of this issue, customers are experiencing lookups failing to complete. We will provide an update within the next 30 minutes.

  2. investigating Oct 24, 2025, 04:08 PM UTC

    We are continuing to investigate this issue.

  3. investigating Oct 24, 2025, 04:40 PM UTC

    We continue to investigate the issue with KVService, that may impact several Splunk cloud platform customers in eu-central-1. As a result of this issue, customers are experiencing lookups failing to complete as well as errors within Splunk applications that depend heavily on KVService.

  4. investigating Oct 24, 2025, 05:30 PM UTC

    We are continuing to investigate this issue.

  5. identified Oct 24, 2025, 06:01 PM UTC

    The issue has been identified and a temporary fix is implemented.

  6. monitoring Oct 24, 2025, 06:42 PM UTC

    A fix has been implemented and we are monitoring the results.

  7. resolved Oct 25, 2025, 07:00 AM UTC

    This incident has been resolved after applying the fix.