Monitoring Splunk

License Pool Violation - After Search is disabled on a license pool due to 5 violations, and event generation issue is fixed, how long do I have to wait for Search re-enabling ?

pignace
New Member

Hello,
I had an issue with one of our applications which generate too many events => I have been in 5 days of license violation.
Searches are disabled as I am in a pre 6.5 Splunk Enterprise license mode.
I fixed the issue with the application so my daily volume of event is back to beeing bellow my license Gb/Day:

  • Do I have to way for 26 days ( so that the number of violations over the last 30 days goes down to less than 5 #) or is there another way of recovering access to the searchs/requests/dashboards ?
  • Will the service be available tomorrow again ?
  • Is it possible to "reset" the count ?

Thank you

Tags (1)
0 Karma

renjith_nair
Legend

@pignace,

You may contact your Splunk sales representative to get a reset key or login and raise a request with support portal

---
What goes around comes around. If it helps, hit it with Karma 🙂
0 Karma
Get Updates on the Splunk Community!

Splunk Observability Cloud's AI Assistant in Action Series: Auditing Compliance and ...

This is the third post in the Splunk Observability Cloud’s AI Assistant in Action series that digs into how to ...

Splunk Community Badges!

  Hey everyone! Ready to earn some serious bragging rights in the community? Along with our existing badges ...

What You Read The Most: Splunk Lantern’s Most Popular Articles!

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...