<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Logging in in Splunk Enterprise</title>
    <link>https://community.splunk.com/t5/Splunk-Enterprise/Logging-in/m-p/745917#M22223</link>
    <description>&lt;P&gt;Trying to log into splunk, this is my first time putting it on my personal cpu. I have a business account through my job. when i try logging in my password will not work and it says the license is expired.&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Mon, 12 May 2025 01:51:18 GMT</pubDate>
    <dc:creator>br0wall</dc:creator>
    <dc:date>2025-05-12T01:51:18Z</dc:date>
    <item>
      <title>Logging in</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise/Logging-in/m-p/745917#M22223</link>
      <description>&lt;P&gt;Trying to log into splunk, this is my first time putting it on my personal cpu. I have a business account through my job. when i try logging in my password will not work and it says the license is expired.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 12 May 2025 01:51:18 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise/Logging-in/m-p/745917#M22223</guid>
      <dc:creator>br0wall</dc:creator>
      <dc:date>2025-05-12T01:51:18Z</dc:date>
    </item>
    <item>
      <title>Re: Logging in</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise/Logging-in/m-p/745918#M22224</link>
      <description>&lt;P&gt;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/310082"&gt;@br0wall&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;DIV&gt;&lt;DIV class=""&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;The &lt;/SPAN&gt;&lt;SPAN class=""&gt;"license &lt;/SPAN&gt;&lt;SPAN class=""&gt;is &lt;/SPAN&gt;&lt;SPAN class=""&gt;expired" &lt;/SPAN&gt;&lt;SPAN class=""&gt;error &lt;/SPAN&gt;&lt;SPAN class=""&gt;typically &lt;/SPAN&gt;&lt;SPAN class=""&gt;occurs &lt;/SPAN&gt;&lt;SPAN class=""&gt;when:&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV class=""&gt;&amp;nbsp;&lt;/DIV&gt;&lt;UL&gt;&lt;LI&gt;&lt;DIV class=""&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;You're&lt;/SPAN&gt; &lt;/SPAN&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;using&lt;/SPAN&gt; &lt;/SPAN&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;a&lt;/SPAN&gt; &lt;/SPAN&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;Splunk&lt;/SPAN&gt; &lt;/SPAN&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;Enterprise&lt;/SPAN&gt; &lt;/SPAN&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;trial&lt;/SPAN&gt; &lt;/SPAN&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;license,&lt;/SPAN&gt; &lt;/SPAN&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;which&lt;/SPAN&gt; &lt;/SPAN&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;expires&lt;/SPAN&gt; &lt;/SPAN&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;after&lt;/SPAN&gt; &lt;/SPAN&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;60&lt;/SPAN&gt; &lt;/SPAN&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;days.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;Your&lt;/SPAN&gt; &lt;/SPAN&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;personal&lt;/SPAN&gt; &lt;/SPAN&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;installation&lt;/SPAN&gt; &lt;/SPAN&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;is&lt;/SPAN&gt; &lt;/SPAN&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;not&lt;/SPAN&gt; &lt;/SPAN&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;connected&lt;/SPAN&gt; &lt;/SPAN&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;to&lt;/SPAN&gt; &lt;/SPAN&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;your&lt;/SPAN&gt; &lt;/SPAN&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;company's&lt;/SPAN&gt; &lt;/SPAN&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;Splunk&lt;/SPAN&gt; &lt;/SPAN&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;License&lt;/SPAN&gt; &lt;/SPAN&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;Master,&lt;/SPAN&gt; &lt;/SPAN&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;which&lt;/SPAN&gt; &lt;/SPAN&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;manages&lt;/SPAN&gt; &lt;/SPAN&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;valid&lt;/SPAN&gt; &lt;/SPAN&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;licenses&lt;/SPAN&gt; &lt;/SPAN&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;for&lt;/SPAN&gt; &lt;/SPAN&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;business&lt;/SPAN&gt; &lt;/SPAN&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;accounts.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;There&lt;/SPAN&gt; &lt;/SPAN&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;might&lt;/SPAN&gt; &lt;/SPAN&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;be&lt;/SPAN&gt; &lt;/SPAN&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;a&lt;/SPAN&gt; &lt;/SPAN&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;mix-up&lt;/SPAN&gt; &lt;/SPAN&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;between&lt;/SPAN&gt; &lt;/SPAN&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;a&lt;/SPAN&gt; &lt;/SPAN&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;trial&lt;/SPAN&gt; &lt;/SPAN&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;license&lt;/SPAN&gt; &lt;/SPAN&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;on&lt;/SPAN&gt; &lt;/SPAN&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;your&lt;/SPAN&gt; &lt;/SPAN&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;personal&lt;/SPAN&gt; &lt;/SPAN&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;computer&lt;/SPAN&gt; &lt;/SPAN&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;and&lt;/SPAN&gt; &lt;/SPAN&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;your&lt;/SPAN&gt; &lt;/SPAN&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;company's&lt;/SPAN&gt; &lt;/SPAN&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;enterprise&lt;/SPAN&gt; &lt;/SPAN&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;license.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/DIV&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;If you want to remove those messages, you have two options:&lt;/P&gt;&lt;P&gt;1 - connect your instance to Splunk License Master from your company&lt;BR /&gt;2 - Purchase a license for your personal splunk box&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Note:&lt;/STRONG&gt; If you select the option 1, please carefully about the data your are sending to this instance, because all the data that you indexed in your personal box will count against the company license, and maybe you can reach the day capacity license.&lt;/P&gt;&lt;P&gt;&lt;A href="https://docs.splunk.com/Documentation/Splunk/latest/Admin/HowSplunklicensingworks" target="_blank" rel="noopener"&gt;https://docs.splunk.com/Documentation/Splunk/latest/Admin/HowSplunklicensingworks&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Please read this document where you can have more details about how splunk is being licensing.&lt;/P&gt;&lt;DIV&gt;Since you have a business account through your job, your company likely has a valid Splunk license. The issue may arise because your local Splunk installation is using a default trial license instead of connecting to your company's License Master.&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;&lt;P&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;&lt;A href="https://community.splunk.com/t5/Getting-Data-In/How-to-resolve-quot-Invalid-username-or-password-Your-license-is/m-p/352690" target="_blank" rel="noopener"&gt;https://community.splunk.com/t5/Getting-Data-In/How-to-resolve-quot-Invalid-username-or-password-Your-license-is/m-p/352690&lt;/A&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;NOTE:&amp;nbsp;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;As I said, &lt;SPAN&gt;Splunk Entrerprise Trial Licence is valid for 60 days ,&amp;nbsp;&lt;/SPAN&gt;I would suggest do complete uninstalltion of splunk in local system and try to install again.&lt;/P&gt;&lt;P&gt;Link to download&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.splunk.com/en_us/download/splunk-enterprise.html" target="_blank" rel="nofollow noopener noreferrer"&gt;https://www.splunk.com/en_us/download/splunk-enterprise.html&lt;/A&gt;&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;also you can monitor license usgae using&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://docs.splunk.com/Documentation/Splunk/latest/Admin/AboutSplunksLicenseUsageReportView" target="_blank"&gt;https://docs.splunk.com/Documentation/Splunk/latest/Admin/AboutSplunksLicenseUsageReportView&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;/DIV&gt;&lt;/DIV&gt;</description>
      <pubDate>Mon, 12 May 2025 03:26:42 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise/Logging-in/m-p/745918#M22224</guid>
      <dc:creator>kiran_panchavat</dc:creator>
      <dc:date>2025-05-12T03:26:42Z</dc:date>
    </item>
    <item>
      <title>Re: Logging in</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise/Logging-in/m-p/745938#M22233</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/310082"&gt;@br0wall&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Is this a new insallation of Splunk on your device? Splunk provides a 60-day trial until you need to change it to the free version.&lt;/P&gt;&lt;P&gt;Is the instance on your own device connected to the license manager within your company, or is this a standalone instance?&lt;/P&gt;&lt;P&gt;If this is a development instance the you could look at applying for a developer license at&amp;nbsp;&lt;A href="https://dev.splunk.com/enterprise/dev_license/" target="_blank"&gt;https://dev.splunk.com/enterprise/dev_license/&lt;/A&gt;&lt;/P&gt;&lt;P&gt;Alternative you could completely remove and re-install Splunk, however depending on your usecase this might not be an option - Note, you would lose all existing data!&lt;/P&gt;&lt;P&gt;Nevertheless, this wont help you login. To reset the admin credentials for your Splunk instance follow the following instructions:&lt;/P&gt;&lt;LI-CODE lang="markup"&gt;Find the passw file for your instance ($SPLUNK_HOME/etc/passwd) and rename it to passwd.bk
Create a file named user-seed.conf in your $SPLUNK_HOME/etc/system/local/ directory.
In the file add the following text:

[user_info]
PASSWORD = NEW_PASSWORD

In the place of "NEW_PASSWORD" insert the password you would like to use.
Start Splunk Enterprise and use the new password to log into your instance from Splunk Web.&lt;/LI-CODE&gt;&lt;P&gt;Alternatively run the following:&lt;/P&gt;&lt;LI-CODE lang="markup"&gt;$SPLUNK_HOME/bin/splunk cmd splunkd rest --noauth POST /services/admin/users/admin "password=&amp;lt;your password&amp;gt;"&lt;/LI-CODE&gt;&lt;P&gt;For more info see&amp;nbsp;&lt;A href="https://docs.splunk.com/Documentation/Splunk/9.4.2/Security/Secureyouradminaccount#:~:text=ASCII%20character(s).-,Reset%20credentials,-If%20you%20lose" target="_blank"&gt;https://docs.splunk.com/Documentation/Splunk/9.4.2/Security/Secureyouradminaccount#:~:text=ASCII%20character(s).-,Reset%20credentials,-If%20you%20lose&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-unicode-emoji" title=":glowing_star:"&gt;🌟&lt;/span&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;Did this answer help you?&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;If so, please consider:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Adding karma to show it was useful&lt;/LI&gt;&lt;LI&gt;Marking it as the solution if it resolved your issue&lt;/LI&gt;&lt;LI&gt;Commenting if you need any clarification&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;Your feedback encourages the volunteers in this community to continue contributing&lt;/P&gt;</description>
      <pubDate>Mon, 12 May 2025 06:54:23 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise/Logging-in/m-p/745938#M22233</guid>
      <dc:creator>livehybrid</dc:creator>
      <dc:date>2025-05-12T06:54:23Z</dc:date>
    </item>
    <item>
      <title>Re: Logging in</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise/Logging-in/m-p/745991#M22239</link>
      <description>One comment. If I remember correctly, you must 1st remove/move your SPLUNK_HOME/etc/passwd file into another name. It if exists then that user-seed.conf didn't work.</description>
      <pubDate>Mon, 12 May 2025 19:58:32 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise/Logging-in/m-p/745991#M22239</guid>
      <dc:creator>isoutamo</dc:creator>
      <dc:date>2025-05-12T19:58:32Z</dc:date>
    </item>
  </channel>
</rss>

