Security

slave had no matching license pool for the data it indexed

rahul29564
New Member

We had 14 indexers under a pool of 2.3TB license.
We added 6 more indexers before 5 days but forget to add it under license pool and it gets 5 violation warning on all 6 new indexers and it was giving below error as below.

[XXXXXXXXX_indexer15] Streamed search execute failed because Error in 'litsearch' command: Your Splunk license expired or you have exceeded your license limit too many times. Renew your Splunk license by visiting www.splunk.com/store or calling 866.GET.SPLUNK.

So now I have added all new 6 Indexer under the 2.3TB pool from UI but still, the error is not going from search head.

0 Karma

nickhills
Ultra Champion

You will need to request a licence reset key from Splunk.

Contact support and explain what has happened and they should be able to send you a new lic which will reset your warning count.

If my comment helps, please give it a thumbs up!
0 Karma
Get Updates on the Splunk Community!

Extending Observability Content to Splunk Cloud

Watch Now!   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to leverage ...

More Control Over Your Monitoring Costs with Archived Metrics!

What if there was a way you could keep all the metrics data you need while saving on storage costs?This is now ...

New in Observability Cloud - Explicit Bucket Histograms

Splunk introduces native support for histograms as a metric data type within Observability Cloud with Explicit ...