<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Splunk License Hard Warning in Installation</title>
    <link>https://community.splunk.com/t5/Installation/Splunk-License-Hard-Warning/m-p/407765#M5474</link>
    <description>&lt;P&gt;Hi&lt;/P&gt;

&lt;PRE&gt;&lt;CODE&gt;Starting with version 6.5, Splunk Enterprise no longer disables search when you exceed your licensed data ingestion quota. Users can keep searching even if the license master acquires five license violation warnings in a 30 day window. The license master is still in violation, but search is no longer blocked.
&lt;/CODE&gt;&lt;/PRE&gt;

&lt;P&gt;have a look at this doc:&lt;BR /&gt;
&lt;A href="https://docs.splunk.com/Documentation/Splunk/7.2.3/Admin/TypesofSplunklicenses#No-enforcement_license"&gt;https://docs.splunk.com/Documentation/Splunk/7.2.3/Admin/TypesofSplunklicenses#No-enforcement_license&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;Also have you gone through splunk enterprise license FAQ's&lt;BR /&gt;
&lt;A href="https://www.splunk.com/en_us/resources/splunk-enterprise-metered-license-enforcement-faq.html"&gt;https://www.splunk.com/en_us/resources/splunk-enterprise-metered-license-enforcement-faq.html&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;let me know if this helps!&lt;/P&gt;</description>
    <pubDate>Thu, 17 Jan 2019 10:03:17 GMT</pubDate>
    <dc:creator>mayurr98</dc:creator>
    <dc:date>2019-01-17T10:03:17Z</dc:date>
    <item>
      <title>Splunk License Hard Warning</title>
      <link>https://community.splunk.com/t5/Installation/Splunk-License-Hard-Warning/m-p/407763#M5472</link>
      <description>&lt;P&gt;Hi Splunkers ,&lt;/P&gt;
&lt;P&gt;We having 100 GB to license ,Out of 100 GB , we have 50 GB License having "Splunk Enterprise - No Enforcement (6.5 )" and Rest 50GB having "Splunk Enterprise " License.Due to high flow of logs we have exceeded license 3 times in this rolling month. What will be impact if we cross 5 HARD WARNINGS in upcoming weeks ? We went throught the SPlunk Documentation , I am having bit confusion beacuse we having 2 differnt type of Licenses with us .&lt;/P&gt;
&lt;P&gt;Thanks &lt;BR /&gt;RJ&lt;/P&gt;</description>
      <pubDate>Mon, 15 Jun 2020 18:02:03 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/Splunk-License-Hard-Warning/m-p/407763#M5472</guid>
      <dc:creator>rohitvjoshi</dc:creator>
      <dc:date>2020-06-15T18:02:03Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk License Hard Warning</title>
      <link>https://community.splunk.com/t5/Installation/Splunk-License-Hard-Warning/m-p/407764#M5473</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;

&lt;P&gt;your No Enforcement License should have a GB volume of 0 and its only use is that your search function is not blocked if you exceed your license 5 times. So as long as you have a license like that and your stack has a "No Enforcement " in it you should be good even if you exceed it.&lt;/P&gt;

&lt;P&gt;The license without "No Enforcement" are probably just older than 6.5. You can check the creation_time in All licenses details on your license master. Newer license 6.5 and older (just guessing) are named Splunk No Enforcement 6.5 .&lt;/P&gt;

&lt;P&gt;Kind Regards&lt;/P&gt;</description>
      <pubDate>Thu, 17 Jan 2019 09:37:13 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/Splunk-License-Hard-Warning/m-p/407764#M5473</guid>
      <dc:creator>dkeck</dc:creator>
      <dc:date>2019-01-17T09:37:13Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk License Hard Warning</title>
      <link>https://community.splunk.com/t5/Installation/Splunk-License-Hard-Warning/m-p/407765#M5474</link>
      <description>&lt;P&gt;Hi&lt;/P&gt;

&lt;PRE&gt;&lt;CODE&gt;Starting with version 6.5, Splunk Enterprise no longer disables search when you exceed your licensed data ingestion quota. Users can keep searching even if the license master acquires five license violation warnings in a 30 day window. The license master is still in violation, but search is no longer blocked.
&lt;/CODE&gt;&lt;/PRE&gt;

&lt;P&gt;have a look at this doc:&lt;BR /&gt;
&lt;A href="https://docs.splunk.com/Documentation/Splunk/7.2.3/Admin/TypesofSplunklicenses#No-enforcement_license"&gt;https://docs.splunk.com/Documentation/Splunk/7.2.3/Admin/TypesofSplunklicenses#No-enforcement_license&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;Also have you gone through splunk enterprise license FAQ's&lt;BR /&gt;
&lt;A href="https://www.splunk.com/en_us/resources/splunk-enterprise-metered-license-enforcement-faq.html"&gt;https://www.splunk.com/en_us/resources/splunk-enterprise-metered-license-enforcement-faq.html&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;let me know if this helps!&lt;/P&gt;</description>
      <pubDate>Thu, 17 Jan 2019 10:03:17 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/Splunk-License-Hard-Warning/m-p/407765#M5474</guid>
      <dc:creator>mayurr98</dc:creator>
      <dc:date>2019-01-17T10:03:17Z</dc:date>
    </item>
  </channel>
</rss>

