QuestionQ123

Configuration Problems

Which of the following security settings must be explicitly configured—that is, which are not enabled by default?

  • A Data encryption between Splunk Web and splunkd.
  • B Certificate authentication between forwarders and indexers.
  • C Certificate authentication between Splunk Web and search head.
  • D Data encryption for distributed search between search heads and indexers.
Explanation

Certificate authentication between forwarders and indexers requires explicit TLS certificate and trust configuration. Splunk’s bundled default certificates can support encrypted component communications, but authenticating forwarders and indexers with certificates is an additional configuration.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!