Splunk Enterprise

Splunk free license usage.

jjordaan
Explorer

Hi.

I setup a test server last year. Forgot about it till this year.
Nothing is sending data to splunk. There's no information in there.
Logged in and cannot use the search.
The trial license expired. So I switched license group to free.
Using the web front end. I logged in again, and can still not use the search.
I left it as is yesterday, thinking it needed a day to tick over.
Came in this morning, logged in, and search still does not work.

Error:
[EventsViewer module] Error in 'litsearch' command: Your Splunk license expired or you have exceeded your license limit too many times. Renew your Splunk license by visiting www.splunk.com/store or calling 866.GET.SPLUNK.

I am an existing customer. Just looking to setup another testing environment.

Thanks.

sdaniels
Splunk Employee
Splunk Employee

You can just download a new version of Splunk and install it as your test environment if you do not care about any of the old data in that system. Move your existing configuration files over if they are still valid. YOu will have the full trial for 60 days and you can then convert to the free license.

Here's a good view of the differences once you convert to the free verssion.

http://www.splunk.com/view/SP-CAAAE8W

0 Karma

martin_mueller
SplunkTrust
SplunkTrust

If you logged in to your search head it's not using the free license.

jjordaan
Explorer

Installed Splunk License Usage plugin.
Here are the results for the past 24 hours:

metrics.log 20011.250816
scheduler.log 2253.667978
audittrail 1557.134735
web_access.log 1460.388676
splunkd.log 1357.563526
splunkd_access.log 1254.835952
web_service.log 157.104491
df 68.437500
license_usage.log 56.928728
searches.log 8.151366
splunkd_stdout.log 3.211914
metrics.log.1 2.607422
license_audit.log 0.557617
splunkd_stderr.log 0.498048
intentions.log 0.440430

Does not look anywhere near 500MB.

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Modernize your Splunk Apps – Introducing Python 3.13 in Splunk

We are excited to announce that the upcoming releases of Splunk Enterprise 10.2.x and Splunk Cloud Platform ...

Step into “Hunt the Insider: An Splunk ES Premier Mystery” to catch a cybercriminal ...

After a whole week of being on call, you fell asleep on your keyboard, and you hit a sequence of buttons that ...