Security

Splunk License Violation

oranger1426
Explorer

I forgot to change the license from trial enterprise to free, as a result caused a few violations.
Is there any way for me to reset the license so that I can resume search?

Tags (1)
0 Karma

Drainy
Champion

I'd disagree slightly on the other answer, I would say the easiest approach is to take a backup of your indexes, reinstall Splunk and migrate the indexes back across. This way you will regain your search capabilities immediately.

Read this for details on how to do the backup;
http://docs.splunk.com/Documentation/Splunk/5.0/Indexer/Backupindexeddata

Of course the rest of the answer remains true, don't index so much 🙂

DaveSavage
Builder

Oranger - this is a well documented subject. Take a look at Kistian Kolb's response here: http://splunk-base.splunk.com/answers/49931/splunk-license-violation

Get Updates on the Splunk Community!

Building Reliable Asset and Identity Frameworks in Splunk ES

 Accurate asset and identity resolution is the backbone of security operations. Without it, alerts are ...

Cloud Monitoring Console - Unlocking Greater Visibility in SVC Usage Reporting

For Splunk Cloud customers, understanding and optimizing Splunk Virtual Compute (SVC) usage and resource ...

Automatic Discovery Part 3: Practical Use Cases

If you’ve enabled Automatic Discovery in your install of the Splunk Distribution of the OpenTelemetry ...