Getting Data In

Splunk Free deployment virtual machines

monkeydjohn
New Member

Hi,

Mrs,Mr

I want deploy the products Splunk Free on a virtual machines linux ( Centos7) or Windows ( 2012R2 or 2016)
Which are the prerequisite ?
I read a lot of document and many question but the preequisite relate to splunk entreprise .
The prerequisite are same in oder to splunk Entreprise and splunk Free?
So
• 12 vCPU
• 12 GB of RAM
• Minimum 1200 random seek operations per second disk performance (sustained)

Thanks

PS: I am French I hope which you understand my message and I am sorry in order to my fault spelling.

Tags (2)
0 Karma
1 Solution

jconger
Splunk Employee
Splunk Employee

The specifications depends on the amount of data ingested per day. The numbers referenced in the question are for an indexer that can ingest up to 300GB/day while supporting a search load.

https://docs.splunk.com/Documentation/Splunk/7.2.5/Capacity/Summaryofperformancerecommendations

The Splunk free license lets you index up to 500MB per day, so the hardware requirements are much less.

View solution in original post

0 Karma

jconger
Splunk Employee
Splunk Employee

The specifications depends on the amount of data ingested per day. The numbers referenced in the question are for an indexer that can ingest up to 300GB/day while supporting a search load.

https://docs.splunk.com/Documentation/Splunk/7.2.5/Capacity/Summaryofperformancerecommendations

The Splunk free license lets you index up to 500MB per day, so the hardware requirements are much less.

0 Karma

monkeydjohn
New Member

Hi jconger.

Thanks to reply me.

have you an idea of size vcpu , ram and storage in order to total users less than 4 if i use splunk free licence .
Just an idea .

0 Karma

jconger
Splunk Employee
Splunk Employee

CPU, RAM, and disk is based on data ingest and search rather than license type. At 500MB per day, you can run Splunk on a laptop computer or similar.

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Modernize your Splunk Apps – Introducing Python 3.13 in Splunk

We are excited to announce that the upcoming releases of Splunk Enterprise 10.2.x and Splunk Cloud Platform ...

Step into “Hunt the Insider: An Splunk ES Premier Mystery” to catch a cybercriminal ...

After a whole week of being on call, you fell asleep on your keyboard, and you hit a sequence of buttons that ...