@gkanapathy can you please add some more information to your answer around the statement "various limits and settings." i.e. what are these settings called, where do you set them etc. i.e. manual page etc?
Ok, so what limits and settings do you need to change for the memory usage to be reduced? I'm having issues with this in our production SLES environment. Anything helps. thanks!
Splunk uses memory in parallel to how much work it is doing. If you are indexing a lot of data, have many concurrent searches, etc than Splunk is going to use a lot of memory in the process of doing the work that you asked it to do.
A better question might be - why would you want to constrain the amount of memory that Splunk uses?