Getting Data In

Splunk Free deployment virtual machines

monkeydjohn
New Member

Hi,

Mrs,Mr

I want deploy the products Splunk Free on a virtual machines linux ( Centos7) or Windows ( 2012R2 or 2016)
Which are the prerequisite ?
I read a lot of document and many question but the preequisite relate to splunk entreprise .
The prerequisite are same in oder to splunk Entreprise and splunk Free?
So
• 12 vCPU
• 12 GB of RAM
• Minimum 1200 random seek operations per second disk performance (sustained)

Thanks

PS: I am French I hope which you understand my message and I am sorry in order to my fault spelling.

Tags (2)
0 Karma
1 Solution

jconger
Splunk Employee
Splunk Employee

The specifications depends on the amount of data ingested per day. The numbers referenced in the question are for an indexer that can ingest up to 300GB/day while supporting a search load.

https://docs.splunk.com/Documentation/Splunk/7.2.5/Capacity/Summaryofperformancerecommendations

The Splunk free license lets you index up to 500MB per day, so the hardware requirements are much less.

View solution in original post

0 Karma

jconger
Splunk Employee
Splunk Employee

The specifications depends on the amount of data ingested per day. The numbers referenced in the question are for an indexer that can ingest up to 300GB/day while supporting a search load.

https://docs.splunk.com/Documentation/Splunk/7.2.5/Capacity/Summaryofperformancerecommendations

The Splunk free license lets you index up to 500MB per day, so the hardware requirements are much less.

0 Karma

monkeydjohn
New Member

Hi jconger.

Thanks to reply me.

have you an idea of size vcpu , ram and storage in order to total users less than 4 if i use splunk free licence .
Just an idea .

0 Karma

jconger
Splunk Employee
Splunk Employee

CPU, RAM, and disk is based on data ingest and search rather than license type. At 500MB per day, you can run Splunk on a laptop computer or similar.

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas     Cisco Live 2026 is almost here, and this ...

What Is the Name of the USB Key Inserted by Bob Smith? (BOTS Hint, Not the Answer)

Hello Splunkers,   So you searched, “what is the name of the usb key inserted by bob smith?”  Not gonna lie… ...

Automating Threat Operations and Threat Hunting with Recorded Future

    Automating Threat Operations and Threat Hunting with Recorded Future June 29, 2026 | Register   Is your ...