<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Testdrive, daily indexing quota? in Splunk Search</title>
    <link>https://community.splunk.com/t5/Splunk-Search/Testdrive-daily-indexing-quota/m-p/71846#M17958</link>
    <description>&lt;P&gt;Hello.
I am giving this software a testdrive on one of my servers. Accidently I pointed to a log-directory holding 23 files, 643MB. Does this mean that I have wait until tomorrow to get the chance to do further testing? As now, nothing shows up when trying to se data in this index.&lt;/P&gt;</description>
    <pubDate>Thu, 31 Mar 2011 18:03:25 GMT</pubDate>
    <dc:creator>tore_stensby</dc:creator>
    <dc:date>2011-03-31T18:03:25Z</dc:date>
    <item>
      <title>Testdrive, daily indexing quota?</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Testdrive-daily-indexing-quota/m-p/71846#M17958</link>
      <description>&lt;P&gt;Hello.
I am giving this software a testdrive on one of my servers. Accidently I pointed to a log-directory holding 23 files, 643MB. Does this mean that I have wait until tomorrow to get the chance to do further testing? As now, nothing shows up when trying to se data in this index.&lt;/P&gt;</description>
      <pubDate>Thu, 31 Mar 2011 18:03:25 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Testdrive-daily-indexing-quota/m-p/71846#M17958</guid>
      <dc:creator>tore_stensby</dc:creator>
      <dc:date>2011-03-31T18:03:25Z</dc:date>
    </item>
    <item>
      <title>Re: Testdrive, daily indexing quota?</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Testdrive-daily-indexing-quota/m-p/71847#M17959</link>
      <description>&lt;P&gt;Have a look here:&lt;/P&gt;

&lt;P&gt;&lt;A href="http://www.splunk.com/base/Documentation/latest/Admin/MoreaboutSplunkFree" rel="nofollow"&gt;http://www.splunk.com/base/Documentation/latest/Admin/MoreaboutSplunkFree&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;You should be able to go over the 500MB indexing limit up to 3 times in a 30 day period before search is disabled.&lt;/P&gt;

&lt;P&gt;Regarding not getting any results back, perhaps your searching over a time period that does not have logs indexed for?  Meaning you may have last hour or last day, but the logs in that directory are from prior to that.&lt;/P&gt;

&lt;P&gt;Try setting 'All Time' if not already next to the search bar and do a search for * or something that you know is in there.&lt;/P&gt;

&lt;P&gt;Hope that helps,&lt;/P&gt;

&lt;P&gt;Scott&lt;/P&gt;</description>
      <pubDate>Thu, 31 Mar 2011 18:46:34 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Testdrive-daily-indexing-quota/m-p/71847#M17959</guid>
      <dc:creator>skippylou</dc:creator>
      <dc:date>2011-03-31T18:46:34Z</dc:date>
    </item>
  </channel>
</rss>

