Installation

Is there a way to send an automated alert for various types of licensing violations?

sjwone
Explorer

Is there a way to send an automated alert for various types of licensing violations. It would be useful to get an automated alert when certain high water marks are reached, i.e. 90% used. And also get alerts with the maximum has been exceeded.

Labels (1)
1 Solution

ChrisG
Splunk Employee
Splunk Employee

Yes. If you are using Splunk 6.0, you can set an alert for any of the searches in the License Usage Report View. See Use the License Usage Report View in the Admin Manual. If you are using Splunk 5.x, install the Splunk on Splunk app and you will have access to the same views for your Splunk 5.x installation.

View solution in original post

ChrisG
Splunk Employee
Splunk Employee

Yes. If you are using Splunk 6.0, you can set an alert for any of the searches in the License Usage Report View. See Use the License Usage Report View in the Admin Manual. If you are using Splunk 5.x, install the Splunk on Splunk app and you will have access to the same views for your Splunk 5.x installation.

jlaw
Splunk Employee
Splunk Employee

Starting in version 6.2, Splunk Enterprise ships with a few preconfigured alerts (including one for license usage) that you can enable in the distributed management console. Read about Platform alerts in the Admin Manual.

awurster
Contributor

i don't like this approach. splunk needs to have alert "channels" or some other sort of groups of issues / alerts etc more easily subscribed to. without it - the tool remains extremely difficult to use out-of-box. doesn't look like major strides in usability are being made in this department.

bailmon
Explorer

Amen... Seconded !

hexx
Splunk Employee
Splunk Employee

When you say "license server", you mean a Splunk instance running as a license master, right?

0 Karma

stefanlasiewski
Contributor

We use Splunk 5. Our license is stored on a license server. Will Splunk on Splunk allow me to view the License Usage and can I configure it to send alerts?

0 Karma
Get Updates on the Splunk Community!

Threat Hunting Unlocked: How to Uplevel Your Threat Hunting With the PEAK Framework ...

WATCH NOWAs AI starts tackling low level alerts, it's more critical than ever to uplevel your threat hunting ...

Splunk APM: New Product Features + Community Office Hours Recap!

Howdy Splunk Community! Over the past few months, we’ve had a lot going on in the world of Splunk Application ...

Index This | Forward, I’m heavy; backward, I’m not. What am I?

April 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...