I have to assume this has been asked over and over but I can't seem to find it.
If I use inputs..conf on my indexer to block specific event id's, do those filtered events count against my Splunk license?
No, they don't. Only events written to disk count against your license.