Security

slave had no matching license pool for the data it indexed

rahul29564
New Member

We had 14 indexers under a pool of 2.3TB license.
We added 6 more indexers before 5 days but forget to add it under license pool and it gets 5 violation warning on all 6 new indexers and it was giving below error as below.

[XXXXXXXXX_indexer15] Streamed search execute failed because Error in 'litsearch' command: Your Splunk license expired or you have exceeded your license limit too many times. Renew your Splunk license by visiting www.splunk.com/store or calling 866.GET.SPLUNK.

So now I have added all new 6 Indexer under the 2.3TB pool from UI but still, the error is not going from search head.

0 Karma

nickhills
Ultra Champion

You will need to request a licence reset key from Splunk.

Contact support and explain what has happened and they should be able to send you a new lic which will reset your warning count.

If my comment helps, please give it a thumbs up!
0 Karma
Get Updates on the Splunk Community!

AppDynamics Summer Webinars

This summer, our mighty AppDynamics team is cooking up some delicious content on YouTube Live to satiate your ...

SOCin’ it to you at Splunk University

Splunk University is expanding its instructor-led learning portfolio with dedicated Security tracks at .conf25 ...

Credit Card Data Protection & PCI Compliance with Splunk Edge Processor

Organizations handling credit card transactions know that PCI DSS compliance is both critical and complex. The ...