Installation

Trial version...

disleym
New Member

Will the Ossec app (ver Version 1.1.77) run under a trial version of Splunk 4.1?

Please and Thanks, Mike

Tags (1)
0 Karma

southeringtonp
Motivator

Since the trial license enables Enterprise features, it will work fine as long as you do not go over the 500 MB per day indexing cap on the trial license.

There are a few things that will not work with the free license, primarily because the Free version does not allow scheduled searches.

Mainly this affects the summary indexing views and tracking of any new servers. For the latter, you can always run the "Rebuild Server Lookup Table" from the Searches and Reports -> Utility menu.

disleym
New Member

Thanks.

Having some issues getting it to work and wanted to eliminate the licence issue.

0 Karma

ftk
Motivator

Any app on splunkbase (with exception for the pay apps, like Splunk PCI) will work with the 30 day trial license.

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Break the Build: Inside the KubeDoom Lounge at .conf26

    You step up to the machine. The pixelated corridors of a certain 1993 FPS load in front of you, EMP Pulse ...

Splunk Auto Ingestion Parallel Pipeline Scaling

Why this feature matters Many Splunk environments experience ingestion pressure long before the host is fully ...

Best Practices: Splunk auto adjust pipeline queue

When you enable autoAdjustQueue in Splunk, maxSize should be understood as the queue size Splunk starts with ...