Training + Certification Discussions

Architect Certification lab

ash2l
Path Finder

How do I set up architect lab for practice including deployment server without Splunk Enterprise license? (I believe the free or trial version does not allow to set up deployment server)

Tags (1)
0 Karma
1 Solution

MuS
SplunkTrust
SplunkTrust

Hi ash2l,

If you download and install Splunk, you get the Enterprise Trail license http://docs.splunk.com/Documentation/Splunk/latest/Admin/TypesofSplunklicenses#Compare_license_featu... which is a fully featured license valid for 60 days http://docs.splunk.com/Documentation/Splunk/latest/Admin/TypesofSplunklicenses#Enterprise_trial_lice...
You might got confused with the free license http://docs.splunk.com/Documentation/Splunk/latest/Admin/TypesofSplunklicenses#Free_license which has the following features disabled:

Multiple user accounts and role-based access controls
Distributed search
Forwarding in TCP/HTTP formats (you can forward data to other Splunk software instances, but not to non-Splunk software instances)
Deployment management (including for clients)
Alerting/monitoring
Authentication and user management, including native authentication, LDAP, and scripted authentication.
There is no login. The command line or browser can access and control all aspects of Splunk software with no user/password prompt.
You cannot add more roles or create user accounts.
Searches are run against all public indexes, 'index=*' and restrictions on search such as user quotas, maximum per-search time ranges, search filters are not supported.
The capability system is disabled, all capabilities are enabled for all users accessing Splunk software.

Hope that helps and good luck with the exam ...

cheers, MuS

View solution in original post

0 Karma

MuS
SplunkTrust
SplunkTrust

Hi ash2l,

If you download and install Splunk, you get the Enterprise Trail license http://docs.splunk.com/Documentation/Splunk/latest/Admin/TypesofSplunklicenses#Compare_license_featu... which is a fully featured license valid for 60 days http://docs.splunk.com/Documentation/Splunk/latest/Admin/TypesofSplunklicenses#Enterprise_trial_lice...
You might got confused with the free license http://docs.splunk.com/Documentation/Splunk/latest/Admin/TypesofSplunklicenses#Free_license which has the following features disabled:

Multiple user accounts and role-based access controls
Distributed search
Forwarding in TCP/HTTP formats (you can forward data to other Splunk software instances, but not to non-Splunk software instances)
Deployment management (including for clients)
Alerting/monitoring
Authentication and user management, including native authentication, LDAP, and scripted authentication.
There is no login. The command line or browser can access and control all aspects of Splunk software with no user/password prompt.
You cannot add more roles or create user accounts.
Searches are run against all public indexes, 'index=*' and restrictions on search such as user quotas, maximum per-search time ranges, search filters are not supported.
The capability system is disabled, all capabilities are enabled for all users accessing Splunk software.

Hope that helps and good luck with the exam ...

cheers, MuS

0 Karma

niketn
Legend

@ash2l, have you tried setting them up. I believe you should be able to setup Splunk Server as Deployment Server in Enterprise Trial Mode.

____________________________________________
| makeresults | eval message= "Happy Splunking!!!"
0 Karma

ash2l
Path Finder

That is correct. I just used trial version and could configure apps from deployment server to forwarders without any issues!

Thanks you and sorry for confusion!

0 Karma

niketn
Legend

No need to be sorry, this is the forum for questions. All the best for Architect Certification 🙂

____________________________________________
| makeresults | eval message= "Happy Splunking!!!"
0 Karma
Get Updates on the Splunk Community!

What's new in Splunk Cloud Platform 9.1.2312?

Hi Splunky people! We are excited to share the newest updates in Splunk Cloud Platform 9.1.2312! Analysts can ...

What’s New in Splunk Security Essentials 3.8.0?

Splunk Security Essentials (SSE) is an app that can amplify the power of your existing Splunk Cloud Platform, ...

Let’s Get You Certified – Vegas-Style at .conf24

Are you ready to level up your Splunk game? Then, let’s get you certified live at .conf24 – our annual user ...