The indexing rate really depends on your hardware and Splunk infrastructure. Number of indexers/search heads, disk subsystems, memory and processors all play a role. Have a look at the capacity planning section in the documentation, there is a lot of good info there. There is a table as well showing hardware needed to go up to 60 TB/Day. There are some additional hardware/index volume guidelines in the Splunk Wiki.