Installation

Splunk Enterprise License Violations - Term License - No Enforcement License (6.5)

ibraheem
Explorer

Hi,

We are continuously in violation the past 3 or 4 months as we are ingesting 600 to 800 GB extra on top of daily limit.

We have received multiple hard warnings. 

My question is what will happen if we continue to be in violation or exceed the daily indexing volume limit? 

 

I appreciate your answer in advance. Thanks.

Labels (1)
0 Karma
1 Solution

richgalloway
SplunkTrust
SplunkTrust

Because you have a no-enforcement license, there should be no ramifications from exceeding the daily indexing limit.  However, when it comes time to renew your license, Splunk may expect you to purchase a higher quota.

---
If this reply helps you, Karma would be appreciated.

View solution in original post

richgalloway
SplunkTrust
SplunkTrust

Because you have a no-enforcement license, there should be no ramifications from exceeding the daily indexing limit.  However, when it comes time to renew your license, Splunk may expect you to purchase a higher quota.

---
If this reply helps you, Karma would be appreciated.
Get Updates on the Splunk Community!

Enterprise Security Content Update (ESCU) | New Releases

In December, the Splunk Threat Research Team had 1 release of new security content via the Enterprise Security ...

Why am I not seeing the finding in Splunk Enterprise Security Analyst Queue?

(This is the first of a series of 2 blogs). Splunk Enterprise Security is a fantastic tool that offers robust ...

Index This | What are the 12 Days of Splunk-mas?

December 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...