Deployment Architecture

licensing in a distributed deployment

brettcave
Builder

we've recently migrated to a distributed deployment, with a licensing server. a recent surge in events caused licensing to be exceeded, and we received a reset license which was installed on the license master. however, we still cant search on the shc due to licensing errors.

after installing a license on the master, what is needed to enable searching across the cluster?

0 Karma

isoutamo
SplunkTrust
SplunkTrust

Hi

You must point all your servers to use that same license master. More info how to do it can found from here: https://docs.splunk.com/Documentation/Splunk/8.0.1/Admin/Distdeploylicenses.

In some cases there have been an issue with old perpetual licenses and then you should create a case to Splunk support.

R. Ismo

0 Karma

codebuilder
Influencer

You need to configure your search heads to be license slaves, and point them to the license master.

Settings > Licensing > Change to Slave > Designate a different Splunk instance as the master license server

----
An upvote would be appreciated and Accept Solution if it helps!
0 Karma

codebuilder
Influencer

You'll need to do the same for your indexers btw, if you haven't already.

----
An upvote would be appreciated and Accept Solution if it helps!
0 Karma

codebuilder
Influencer

Did this help you resolve your issue? if so, please "accept" the answer so that others in the community may benefit.

----
An upvote would be appreciated and Accept Solution if it helps!
0 Karma
Get Updates on the Splunk Community!

Announcing the Expansion of the Splunk Academic Alliance Program

The Splunk Community is more than just an online forum — it’s a network of passionate users, administrators, ...

Learn Splunk Insider Insights, Do More With Gen AI, & Find 20+ New Use Cases You Can ...

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...

Buttercup Games: Further Dashboarding Techniques (Part 7)

This series of blogs assumes you have already completed the Splunk Enterprise Search Tutorial as it uses the ...