Splunk Enterprise

This pool has exceeded its configured poolsize=0 bytes

DashZentin
Explorer

I had the free version of Splunk and after a while search was disabled since ingest was over 500MB.

So I purchased a 12GB Enterprise license and installed it a few days ago. Now I'm getting warnings "This pool has exceeded its configured poolsize=0 bytes" every day. My daily ingest per day since I installed the license is 1.7GB. 

I am also still getting a warning "Daily indexing volume limit exceeded. Your Splunk deployment is subject to license enforcement". I thought this would go away once I installed the licence.

I am using Splunk Enterprise 10.0.2 on Windows Server 2025.

Thank you for your help.

Labels (1)
0 Karma

livehybrid
SplunkTrust
SplunkTrust

Hi @DashZentin 

If you are seeing 'FROM_THE_FUTURE' then it means the license isnt valid yet. Do you know what the startdate of the license is? If you edit the license file in a text editor is the creation_time value in the future? (Greater than the current timestamp - 1764629805) ?

If so you will need to speak to Splunk about ensuring your license is valid and current not future dated!

🌟 Did this answer help you? If so, please consider:

  • Adding karma to show it was useful
  • Marking it as the solution if it resolved your issue
  • Commenting if you need any clarification

Your feedback encourages the volunteers in this community to continue contributing

 

0 Karma

thahir
Contributor

@DashZentin , it is clear that you are not using your new license, make use of your new license

refer this page https://community.splunk.com/t5/Installation/Why-does-Splunk-enterprise-license-show-Status-FROM-THE... 

0 Karma

livehybrid
SplunkTrust
SplunkTrust

Hi @DashZentin 

Under Settings->Licensing  is it using the 'Enterprise license group' or still using the Free license?

Try clicking the change license group button and select Enterprise.

🌟 Did this answer help you? If so, please consider:

  • Adding karma to show it was useful
  • Marking it as the solution if it resolved your issue
  • Commenting if you need any clarification

Your feedback encourages the volunteers in this community to continue contributing

DashZentin
Explorer

Hi,

Yes it's set to "This server is configured to use licenses from the Enterprise license group".

On the same page there's a section "Splunk Enterprise Term License stack" with volume 12,288 MB.

The auto-generated_pool_enterprise shows 932 MB / 0 MB. 

0 Karma

thahir
Contributor

@DashZentin make sure you are using the right license, may be still its directed to the free license

go to setting and license and check for the usage like below

thahir_0-1764589526569.png

 

its should be 932 MB/12,228 MB under the new license stack which you purchased.

0 Karma

DashZentin
Explorer

So in that section I have 

LicensesVolumeExpirationStatus
Splunk Enterprise Term License12,288 MB2027FROM_THE_FUTURE
Effective daily volume0 MB  

 

auto_generated_pool_enterprise941 MB / 0 MB
0 Karma
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...