<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: splunk search issue. in Splunk Search</title>
    <link>https://community.splunk.com/t5/Splunk-Search/Why-am-I-receiving-this-license-error/m-p/587390#M204569</link>
    <description>&lt;P&gt;Hi,&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/236694"&gt;@SanjayReddy&lt;/a&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;Thanks for your reply. I check the expiration time and it doesn't expire now. and I also change the license group to a free license but still have the same issue.&amp;nbsp;&lt;/P&gt;&lt;P&gt;I also have another discovery is my indexer is in violation. does it is the reason I got this issue? how to set the indexer to normal status?&lt;/P&gt;&lt;P&gt;thanks for your help.&lt;/P&gt;</description>
    <pubDate>Thu, 03 Mar 2022 08:20:49 GMT</pubDate>
    <dc:creator>zhoayang</dc:creator>
    <dc:date>2022-03-03T08:20:49Z</dc:date>
    <item>
      <title>Why am I receiving this license error?</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Why-am-I-receiving-this-license-error/m-p/587376#M204564</link>
      <description>&lt;P&gt;Hi Splunk team,&lt;/P&gt;
&lt;P&gt;I have a question when I search in Splunk console. I got an issue as below:&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;&amp;nbsp;Error in 'litsearch' command: Your Splunk license expired or you have exceeded your license limit too many times. Renew your Splunk license by visiting &lt;A href="http://www.splunk.com/store" target="_blank" rel="noopener"&gt;www.splunk.com/store&lt;/A&gt; or calling 866.GET.SPLUNK.&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;And I used an enterprise license. Does anyone have an idea about this case? appreciate it.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="zhoayang_0-1646293252311.png" style="width: 400px;"&gt;&lt;img src="https://community.splunk.com/t5/image/serverpage/image-id/18255i2EB36469AB45BE86/image-size/medium?v=v2&amp;amp;px=400" role="button" title="zhoayang_0-1646293252311.png" alt="zhoayang_0-1646293252311.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 04 Mar 2022 14:39:24 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Why-am-I-receiving-this-license-error/m-p/587376#M204564</guid>
      <dc:creator>zhoayang</dc:creator>
      <dc:date>2022-03-04T14:39:24Z</dc:date>
    </item>
    <item>
      <title>Re: splunk search issue.</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Why-am-I-receiving-this-license-error/m-p/587380#M204565</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/242566"&gt;@zhoayang&lt;/a&gt;&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;I guess you are using using 60 days Enterprise version, and it got expried&lt;BR /&gt;&lt;BR /&gt;plese check License expiry date&amp;nbsp;Settings --&amp;gt; Licensing&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="SanjayReddy_1-1646294861842.png" style="width: 400px;"&gt;&lt;img src="https://community.splunk.com/t5/image/serverpage/image-id/18257i78FB5E87168F64D7/image-size/medium?v=v2&amp;amp;px=400" role="button" title="SanjayReddy_1-1646294861842.png" alt="SanjayReddy_1-1646294861842.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;you can change to Free license&amp;nbsp;&lt;BR /&gt;please update your license settings from following steps and select &lt;STRONG&gt;free license&amp;nbsp;&lt;/STRONG&gt;&lt;BR /&gt;&lt;BR /&gt;Settings --&amp;gt; Licensing - &amp;gt; change license group&lt;BR /&gt;&lt;BR /&gt;that will fix the issue&lt;/P&gt;</description>
      <pubDate>Thu, 03 Mar 2022 08:08:29 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Why-am-I-receiving-this-license-error/m-p/587380#M204565</guid>
      <dc:creator>SanjayReddy</dc:creator>
      <dc:date>2022-03-03T08:08:29Z</dc:date>
    </item>
    <item>
      <title>Re: splunk search issue.</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Why-am-I-receiving-this-license-error/m-p/587390#M204569</link>
      <description>&lt;P&gt;Hi,&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/236694"&gt;@SanjayReddy&lt;/a&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;Thanks for your reply. I check the expiration time and it doesn't expire now. and I also change the license group to a free license but still have the same issue.&amp;nbsp;&lt;/P&gt;&lt;P&gt;I also have another discovery is my indexer is in violation. does it is the reason I got this issue? how to set the indexer to normal status?&lt;/P&gt;&lt;P&gt;thanks for your help.&lt;/P&gt;</description>
      <pubDate>Thu, 03 Mar 2022 08:20:49 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Why-am-I-receiving-this-license-error/m-p/587390#M204569</guid>
      <dc:creator>zhoayang</dc:creator>
      <dc:date>2022-03-03T08:20:49Z</dc:date>
    </item>
    <item>
      <title>Re: splunk search issue.</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Why-am-I-receiving-this-license-error/m-p/587402#M204571</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/236694"&gt;@SanjayReddy&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Sorry forget to list the snapshot. it shows the license doesn't expire.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="zhoayang_0-1646298525048.png" style="width: 400px;"&gt;&lt;img src="https://community.splunk.com/t5/image/serverpage/image-id/18258i22D678DCFC4A80BF/image-size/medium?v=v2&amp;amp;px=400" role="button" title="zhoayang_0-1646298525048.png" alt="zhoayang_0-1646298525048.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 03 Mar 2022 09:09:43 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Why-am-I-receiving-this-license-error/m-p/587402#M204571</guid>
      <dc:creator>zhoayang</dc:creator>
      <dc:date>2022-03-03T09:09:43Z</dc:date>
    </item>
    <item>
      <title>Re: splunk search issue.</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Why-am-I-receiving-this-license-error/m-p/587408#M204572</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/242566"&gt;@zhoayang&lt;/a&gt;&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;as you are using developer license , you might have exceed daily license limit 5 times in 30 days.&lt;BR /&gt;&lt;BR /&gt;to re enable searching you need to send an email to devinfo@splunk.com&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="SanjayReddy_0-1646300212323.png" style="width: 400px;"&gt;&lt;img src="https://community.splunk.com/t5/image/serverpage/image-id/18259iE85A5C44DF5CAECE/image-size/medium?v=v2&amp;amp;px=400" role="button" title="SanjayReddy_0-1646300212323.png" alt="SanjayReddy_0-1646300212323.png" /&gt;&lt;/span&gt;&lt;BR /&gt;&lt;BR /&gt;also please check your daily ingestion limit&amp;nbsp; for last 30 days&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="SanjayReddy_2-1646300433800.png" style="width: 400px;"&gt;&lt;img src="https://community.splunk.com/t5/image/serverpage/image-id/18261i61E9EC9FA20A0FC0/image-size/medium?v=v2&amp;amp;px=400" role="button" title="SanjayReddy_2-1646300433800.png" alt="SanjayReddy_2-1646300433800.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;once you searching reset from splunk&amp;nbsp;you might need to install your developer license again&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 03 Mar 2022 09:45:34 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Why-am-I-receiving-this-license-error/m-p/587408#M204572</guid>
      <dc:creator>SanjayReddy</dc:creator>
      <dc:date>2022-03-03T09:45:34Z</dc:date>
    </item>
    <item>
      <title>Re: splunk search issue.</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Why-am-I-receiving-this-license-error/m-p/587429#M204577</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/242566"&gt;@zhoayang&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;since your license expiration time is still due and changing to free license will not help it would still give the same error so you can switch to your earlier license. Also as highlighted by your discovery&amp;nbsp; the indexer is in violation if you had more than 5 or more warning in developers license it would give this error you have to resolve the indexer violation by either stopping the ingestion of the data to that particular violating index and wait for 24 hours and it would get resolved and you can start searching again&lt;/P&gt;&lt;P&gt;if you have multiple sources ingesting into that problematic index then disable the source which is the major contributor&amp;nbsp;&lt;/P&gt;&lt;P&gt;i had a similar issue with my developers license and did the same action and after 24 hours all service of splunk were resumed&lt;/P&gt;</description>
      <pubDate>Thu, 03 Mar 2022 13:04:13 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Why-am-I-receiving-this-license-error/m-p/587429#M204577</guid>
      <dc:creator>venky1544</dc:creator>
      <dc:date>2022-03-03T13:04:13Z</dc:date>
    </item>
    <item>
      <title>Re: splunk search issue.</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Why-am-I-receiving-this-license-error/m-p/587559#M204624</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/236694"&gt;@SanjayReddy&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;great!! I think it is the reason why my indexer is in violation status. I found a lot of warnings in my alert console&amp;nbsp;&lt;/P&gt;&lt;P&gt;that said&amp;nbsp;&lt;STRONG&gt;This pool has exceeded its configured poolsize=0 bytes. A warning has been recorded for all members.&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;Maybe I should solve this problem then I will follow your advice. appreciate It! thanks again.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 04 Mar 2022 02:16:59 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Why-am-I-receiving-this-license-error/m-p/587559#M204624</guid>
      <dc:creator>zhoayang</dc:creator>
      <dc:date>2022-03-04T02:16:59Z</dc:date>
    </item>
    <item>
      <title>Re: splunk search issue.</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Why-am-I-receiving-this-license-error/m-p/587561#M204625</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/137142"&gt;@venky1544&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Yeah. that's correct. In the alert console, it appeared plenty of warning logs said&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;This pool has exceeded its configured poolsize=0 bytes. A warning has been recorded for all members.&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;it will cause the indexer to become in violation status.&lt;/P&gt;&lt;P&gt;thanks for your reply. appreciate it.&lt;/P&gt;</description>
      <pubDate>Fri, 04 Mar 2022 02:23:01 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Why-am-I-receiving-this-license-error/m-p/587561#M204625</guid>
      <dc:creator>zhoayang</dc:creator>
      <dc:date>2022-03-04T02:23:01Z</dc:date>
    </item>
  </channel>
</rss>

