Installation

Can I create an instance on my local machine and monitor in production server using free or licensed version?

karthikannan
New Member
Error - Bad request- In handler 'localslave'. editTracker failed, reason='WARN': path=/masterlm/usage: This license does not support being a remote master. 

Actually what I'm looking is as of now I done the Splunk trial version setup in our application production server which is running remotely. So whenever I need to access Splunk Web, I’m connecting to the production server remotely.

Now I want to know, can I create the Splunk instance in my local machine and similarly that for my team members by referring the production server Splunk instance as the master? So that we can do search & reporting in Splunk without logging in production server? But ultimately the monitoring should be happening in our production server.

If yes, then can this be done in the free version or licensed version?

Thanks,
Karthik

Labels (1)
0 Karma
1 Solution

MuS
SplunkTrust
SplunkTrust

Hi karthikannan,

what you're looking for or trying to do, is called distributed search http://docs.splunk.com/Documentation/Splunk/6.3.0/DistSearch/Whatisdistributedsearch and cannot be done with the free license as stated in the docs http://docs.splunk.com/Documentation/Splunk/6.3.0/Admin/MoreaboutSplunkFree first point under

What is included with Splunk Free?

 Distributed search configurations (including search head clustering) are not available.

You need to have a valid enterprise license to do so.

Hope this helps ...

cheers, MuS

View solution in original post

MuS
SplunkTrust
SplunkTrust

Hi karthikannan,

what you're looking for or trying to do, is called distributed search http://docs.splunk.com/Documentation/Splunk/6.3.0/DistSearch/Whatisdistributedsearch and cannot be done with the free license as stated in the docs http://docs.splunk.com/Documentation/Splunk/6.3.0/Admin/MoreaboutSplunkFree first point under

What is included with Splunk Free?

 Distributed search configurations (including search head clustering) are not available.

You need to have a valid enterprise license to do so.

Hope this helps ...

cheers, MuS

karthikannan
New Member

Thanks very much for the clarification!!

0 Karma
Get Updates on the Splunk Community!

What's new in Splunk Cloud Platform 9.1.2312?

Hi Splunky people! We are excited to share the newest updates in Splunk Cloud Platform 9.1.2312! Analysts can ...

What’s New in Splunk Security Essentials 3.8.0?

Splunk Security Essentials (SSE) is an app that can amplify the power of your existing Splunk Cloud Platform, ...

Let’s Get You Certified – Vegas-Style at .conf24

Are you ready to level up your Splunk game? Then, let’s get you certified live at .conf24 – our annual user ...