Getting Data In

Daily indexing volume limit exceeded. Error in 'UnifiedSearch': Your Splunk license expired or you have exceeded your license limit too many times. Renew your Splunk license by visiting www.splunk.com/store or calling 866.GET.SPLUNK.

vamshi_gajula
New Member

Daily indexing volume limit exceeded.
Error in 'UnifiedSearch': Your Splunk license expired or you have exceeded your license limit too many times. Renew your Splunk license by visiting www.splunk.com/store or calling 866.GET.SPLUNK.

How to resolve this issue.
Please help on this issue.

Tags (2)
0 Karma
1 Solution

jbsplunk
Splunk Employee
Splunk Employee

If you're using an enterprise license, you can contact support and they'll assist you in obtaining a reset license. If you aren't an enterprise customer, you're going to have to wait for 30 days to the license violations to clear before you're allowed to use the search functionality again. We allow 5 violations within a 30 day rolling window for enterprise customers, 3 for those using the free license.

If you go to the link I'll post below, you can find a search you can enable in the future that will alert you to any violations as they occur so that you don't end up in this situation again.

http://wiki.splunk.com/Community:TroubleshootingIndexedDataVolume

View solution in original post

shannongroup
Explorer

I have just received an identical error, my trial expired and I moved over to the free licence. however I have not exceeded any quota's. I just had to move from trial to free ?? Can this be rectified to allow my data to be displayed?

I'm getting

alt text

and

alt text

jbsplunk
Splunk Employee
Splunk Employee

If you're using an enterprise license, you can contact support and they'll assist you in obtaining a reset license. If you aren't an enterprise customer, you're going to have to wait for 30 days to the license violations to clear before you're allowed to use the search functionality again. We allow 5 violations within a 30 day rolling window for enterprise customers, 3 for those using the free license.

If you go to the link I'll post below, you can find a search you can enable in the future that will alert you to any violations as they occur so that you don't end up in this situation again.

http://wiki.splunk.com/Community:TroubleshootingIndexedDataVolume

ChrisG
Splunk Employee
Splunk Employee

...and for more information, you can read About license violations in the Admin Manual.

Get Updates on the Splunk Community!

Introducing the Splunk Community Dashboard Challenge!

Welcome to Splunk Community Dashboard Challenge! This is your chance to showcase your skills in creating ...

Wondering How to Build Resiliency in the Cloud?

IT leaders are choosing Splunk Cloud as an ideal cloud transformation platform to drive business resilience,  ...

Updated Data Management and AWS GDI Inventory in Splunk Observability

We’re making some changes to Data Management and Infrastructure Inventory for AWS. The Data Management page, ...