Installation

How to troubleshoot: Your Splunk license expired or you have exceeded your license limit too many times

rksk
Explorer

Hello Team,

  My workplace bought Splunk a year ago, and I am self-learning myself with limited access to my office Splunk the tutorial I am learning provides instruction on how to install free Splunk on my home computer, so I installed it today I got the following error within half an hour, how do I exceed the license within 30 minutes I thought the free license is for 60 days.

I do see a lot of posts on the same topic sorry for the duplicate post, can someone tell me how to troubleshoot? Do I have to uninstall and reinstall again?

----------------------

Error in 'litsearch' command: Your Splunk license expired or you have exceeded your license limit too many times. Renew your Splunk license by visiting www.splunk.com/store or calling 866.GET.SPLUNK.
 
The search job has failed due to an error. You may be able view the job in the Job Inspector.

 

Labels (2)
0 Karma
1 Solution

SanjayReddy
SplunkTrust
SplunkTrust

Hi @rksk 

Splunk Entrerprise Free Licence is valid for 60 days , 

 

I would suggest do complete uninstalltion of splunk in local system and try to install again

Link to download

https://www.splunk.com/en_us/download/splunk-enterprise.html 

also you can monitor license usgae using following URL

http://localhost:8000/en-GB/manager/system/licensing 

View solution in original post

SanjayReddy
SplunkTrust
SplunkTrust

Hi @rksk 

Splunk Entrerprise Free Licence is valid for 60 days , 

 

I would suggest do complete uninstalltion of splunk in local system and try to install again

Link to download

https://www.splunk.com/en_us/download/splunk-enterprise.html 

also you can monitor license usgae using following URL

http://localhost:8000/en-GB/manager/system/licensing 

rksk
Explorer

Thank you very much, Sanjay!

It worked after I reinstall it,

I got a different issue now, created a separate question not sure if you going to see it or not

The message is

"The maximum number of concurrent historical searches on this instance has been reached."

Before I get this message I was unable to load any data through upload .csv or .txt file, the page shows no data.

Then I mapped the directory itself through settings >> data inputs

the page spins for a long time and on search, I got the below message

"The maximum number of concurrent historical searches on this instance has been reached."

0 Karma

rksk
Explorer

Two more messages today

 

The TCP output processor has paused the data flow. Forwarding to host_dest= inside output group default-autolb-group from host_src=training has been blocked for blocked_seconds=10. This can stall the data flow towards indexing and other network outputs. Review the receiving system's health in the Splunk Monitoring Console. It is probably not accepting data. Learn more.11/9/2022, 1:45:39 AM
Unable to initialize modular input "ssg_subscription_modular_input" defined in the app "splunk_secure_gateway": Introspecting scheme=ssg_subscription_modular_input: script running failed (exited with code 1)..11/9/2022, 1:45:19 AM
 
 
Unable to initialize modular input "ssg_subscription_modular_input" defined in the app "splunk_secure_gateway": Introspecting scheme=ssg_subscription_modular_input: script running failed (exited with code 1)..11/9/2022, 1:45:19 AM
 
0 Karma
Get Updates on the Splunk Community!

Enterprise Security Content Update (ESCU) | New Releases

In December, the Splunk Threat Research Team had 1 release of new security content via the Enterprise Security ...

Why am I not seeing the finding in Splunk Enterprise Security Analyst Queue?

(This is the first of a series of 2 blogs). Splunk Enterprise Security is a fantastic tool that offers robust ...

Index This | What are the 12 Days of Splunk-mas?

December 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...