Training + Certification Discussions

Architect Certification lab

ash2l
Path Finder

How do I set up architect lab for practice including deployment server without Splunk Enterprise license? (I believe the free or trial version does not allow to set up deployment server)

Tags (1)
0 Karma
1 Solution

MuS
SplunkTrust
SplunkTrust

Hi ash2l,

If you download and install Splunk, you get the Enterprise Trail license http://docs.splunk.com/Documentation/Splunk/latest/Admin/TypesofSplunklicenses#Compare_license_featu... which is a fully featured license valid for 60 days http://docs.splunk.com/Documentation/Splunk/latest/Admin/TypesofSplunklicenses#Enterprise_trial_lice...
You might got confused with the free license http://docs.splunk.com/Documentation/Splunk/latest/Admin/TypesofSplunklicenses#Free_license which has the following features disabled:

Multiple user accounts and role-based access controls
Distributed search
Forwarding in TCP/HTTP formats (you can forward data to other Splunk software instances, but not to non-Splunk software instances)
Deployment management (including for clients)
Alerting/monitoring
Authentication and user management, including native authentication, LDAP, and scripted authentication.
There is no login. The command line or browser can access and control all aspects of Splunk software with no user/password prompt.
You cannot add more roles or create user accounts.
Searches are run against all public indexes, 'index=*' and restrictions on search such as user quotas, maximum per-search time ranges, search filters are not supported.
The capability system is disabled, all capabilities are enabled for all users accessing Splunk software.

Hope that helps and good luck with the exam ...

cheers, MuS

View solution in original post

0 Karma

MuS
SplunkTrust
SplunkTrust

Hi ash2l,

If you download and install Splunk, you get the Enterprise Trail license http://docs.splunk.com/Documentation/Splunk/latest/Admin/TypesofSplunklicenses#Compare_license_featu... which is a fully featured license valid for 60 days http://docs.splunk.com/Documentation/Splunk/latest/Admin/TypesofSplunklicenses#Enterprise_trial_lice...
You might got confused with the free license http://docs.splunk.com/Documentation/Splunk/latest/Admin/TypesofSplunklicenses#Free_license which has the following features disabled:

Multiple user accounts and role-based access controls
Distributed search
Forwarding in TCP/HTTP formats (you can forward data to other Splunk software instances, but not to non-Splunk software instances)
Deployment management (including for clients)
Alerting/monitoring
Authentication and user management, including native authentication, LDAP, and scripted authentication.
There is no login. The command line or browser can access and control all aspects of Splunk software with no user/password prompt.
You cannot add more roles or create user accounts.
Searches are run against all public indexes, 'index=*' and restrictions on search such as user quotas, maximum per-search time ranges, search filters are not supported.
The capability system is disabled, all capabilities are enabled for all users accessing Splunk software.

Hope that helps and good luck with the exam ...

cheers, MuS

0 Karma

niketn
Legend

@ash2l, have you tried setting them up. I believe you should be able to setup Splunk Server as Deployment Server in Enterprise Trial Mode.

____________________________________________
| makeresults | eval message= "Happy Splunking!!!"
0 Karma

ash2l
Path Finder

That is correct. I just used trial version and could configure apps from deployment server to forwarders without any issues!

Thanks you and sorry for confusion!

0 Karma

niketn
Legend

No need to be sorry, this is the forum for questions. All the best for Architect Certification 🙂

____________________________________________
| makeresults | eval message= "Happy Splunking!!!"
0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Character substitutions with Regular Expressions

This challenge was first posted on Slack #puzzles channelFor BORE at .conf23, we had a puzzle question which ...

Splunk Community Badges!

  Hey everyone! Ready to earn some serious bragging rights in the community? Along with our existing badges ...

[Puzzles] Solve, Learn, Repeat: Matching cron expressions

This puzzle (first published here) is based on matching timestamps to cron expressions.All the timestamps ...