<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: How does Splunk behave after license expiry? in Monitoring Splunk</title>
    <link>https://community.splunk.com/t5/Monitoring-Splunk/How-does-Splunk-behave-after-license-expiry/m-p/163241#M7833</link>
    <description>&lt;P&gt;3: Splunk will keep indexing. UFs don't notice the license expiry because the forwarder license doesn't expire and is free anyway.&lt;BR /&gt;
You will however see license violations very soon, because even if you switch to the free license you'll be limited to 500MB/day only... probably less than your current license.&lt;/P&gt;

&lt;P&gt;2: see 1, retrieving events is just searching.&lt;/P&gt;

&lt;P&gt;1: You should be able to search on the free license provided you don't exceed license violations... which is a real possibility due to 3.&lt;/P&gt;</description>
    <pubDate>Wed, 14 May 2014 09:30:23 GMT</pubDate>
    <dc:creator>martin_mueller</dc:creator>
    <dc:date>2014-05-14T09:30:23Z</dc:date>
    <item>
      <title>How does Splunk behave after license expiry?</title>
      <link>https://community.splunk.com/t5/Monitoring-Splunk/How-does-Splunk-behave-after-license-expiry/m-p/163240#M7832</link>
      <description>&lt;P&gt;Hello. I looked around for answers in the FAQ and this forum, but was unable to find any. Apologies if this is already asked.&lt;/P&gt;

&lt;P&gt;I possess a Splunk Enterprise license that expires in a few days. &lt;/P&gt;

&lt;P&gt;I have following questions: &lt;/P&gt;

&lt;OL&gt;
&lt;LI&gt;Will I be still able to use the Splunk dashboard to perform searches of data that was indexed prior to expiry?&lt;/LI&gt;
&lt;LI&gt;Will I be able to perform API calls to retrieve events which were already indexed prior to expiry?&lt;/LI&gt;
&lt;LI&gt;How is indexing (universal forwarding) affected. Will the splunk daemon throw an exception and stop adding new events?&lt;/LI&gt;
&lt;/OL&gt;

&lt;P&gt;Thank you.&lt;/P&gt;</description>
      <pubDate>Wed, 14 May 2014 07:02:55 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Monitoring-Splunk/How-does-Splunk-behave-after-license-expiry/m-p/163240#M7832</guid>
      <dc:creator>kaustubhfab</dc:creator>
      <dc:date>2014-05-14T07:02:55Z</dc:date>
    </item>
    <item>
      <title>Re: How does Splunk behave after license expiry?</title>
      <link>https://community.splunk.com/t5/Monitoring-Splunk/How-does-Splunk-behave-after-license-expiry/m-p/163241#M7833</link>
      <description>&lt;P&gt;3: Splunk will keep indexing. UFs don't notice the license expiry because the forwarder license doesn't expire and is free anyway.&lt;BR /&gt;
You will however see license violations very soon, because even if you switch to the free license you'll be limited to 500MB/day only... probably less than your current license.&lt;/P&gt;

&lt;P&gt;2: see 1, retrieving events is just searching.&lt;/P&gt;

&lt;P&gt;1: You should be able to search on the free license provided you don't exceed license violations... which is a real possibility due to 3.&lt;/P&gt;</description>
      <pubDate>Wed, 14 May 2014 09:30:23 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Monitoring-Splunk/How-does-Splunk-behave-after-license-expiry/m-p/163241#M7833</guid>
      <dc:creator>martin_mueller</dc:creator>
      <dc:date>2014-05-14T09:30:23Z</dc:date>
    </item>
  </channel>
</rss>

