Alerting

Delay log ingestion after License update

spodda01da
Path Finder

Hello All,

I am having an issue where log ingestion have delay for hours after I updated Splunk License.

License got expired and after 24 hours we got a renewed license but after updating it the log are coming very late by few hours.

Before reaching out to Splunk, I wanted to check if its because of the new License or may

Labels (1)
0 Karma

spodda01da
Path Finder

Thank you! it seems restarting splunk services has fixed the issue.

0 Karma

codebuilder
Influencer

Also, if you utilize scheduled searches those would be impacted, and depending on the scheduling of those you might see delayed results. Use a real time search to validate or manually kick off any saved searches.

----
An upvote would be appreciated and Accept Solution if it helps!
0 Karma

codebuilder
Influencer

Indexing should not be affected by an expired license, only searching.

----
An upvote would be appreciated and Accept Solution if it helps!
0 Karma
Get Updates on the Splunk Community!

Observe and Secure All Apps with Splunk

  Join Us for Our Next Tech Talk: Observe and Secure All Apps with SplunkAs organizations continue to innovate ...

Splunk Decoded: Business Transactions vs Business IQ

It’s the morning of Black Friday, and your e-commerce site is handling 10x normal traffic. Orders are flowing, ...

Fastest way to demo Observability

I’ve been having a lot of fun learning about Kubernetes and Observability. I set myself an interesting ...