<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Securing UF-IDX traffic using SSL/TLS  in Splunk Practical Lab Exam in Deployment Architecture</title>
    <link>https://community.splunk.com/t5/Deployment-Architecture/Securing-UF-IDX-traffic-using-SSL-TLS-in-Splunk-Practical-Lab/m-p/740515#M29226</link>
    <description>&lt;P&gt;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/264857"&gt;@kiran_panchavat&lt;/a&gt;&amp;nbsp;&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/239337"&gt;@shabamichae&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;This is not strictly true. According to the documentation "Participants then perform a mock deployment according to requirements which adhere to Splunk Deployment Methodology and best-practices." - SSL falls in to best-practice category here for both compression (for data transfer) and security benefits.&lt;/P&gt;&lt;P&gt;Whilst not including SSL between Splunk servers might not result in a failing the the lab, there isnt a zero chance that it wont deduct marks which could affect the final score/outcome. Remember that this is one of the prereqs to Core Consulting certification and at this point it is expected that candidates will apply configuration that is most suitable to the customer.&lt;/P&gt;&lt;P&gt;Splunk Lantern (great for some best-practice guidance) has a good page on SSL:&amp;nbsp;&lt;A href="https://lantern.splunk.com/Splunk_Platform/Product_Tips/Administration/Securing_the_Splunk_platform_with_TLS" target="_blank" rel="noopener"&gt;https://lantern.splunk.com/Splunk_Platform/Product_Tips/Administration/Securing_the_Splunk_platform_with_TLS&lt;/A&gt;&lt;/P&gt;&lt;P&gt;You can also see more info on enabling SSL at&amp;nbsp;&lt;A href="https://docs.splunk.com/Documentation/Splunk/9.4.0/Security/StepstosecuringSplunkwithTLS" target="_blank" rel="noopener"&gt;https://docs.splunk.com/Documentation/Splunk/9.4.0/Security/StepstosecuringSplunkwithTLS&lt;/A&gt;&lt;/P&gt;&lt;P&gt;Please let me know how you get on and consider adding karma to this or any other answer if it has helped.&lt;BR /&gt;Regards&lt;/P&gt;&lt;P&gt;Will&lt;/P&gt;</description>
    <pubDate>Sun, 02 Mar 2025 16:16:03 GMT</pubDate>
    <dc:creator>livehybrid</dc:creator>
    <dc:date>2025-03-02T16:16:03Z</dc:date>
    <item>
      <title>Securing UF-IDX traffic using SSL/TLS  in Splunk Practical Lab Exam</title>
      <link>https://community.splunk.com/t5/Deployment-Architecture/Securing-UF-IDX-traffic-using-SSL-TLS-in-Splunk-Practical-Lab/m-p/740482#M29224</link>
      <description>&lt;P&gt;In the practical Lab environment, how important is it to configure TLS on Splunk servers during the practical Lab. Do i get penalized for not&amp;nbsp;securing UF-IDX traffic using SSL/TLS&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 02 Mar 2025 04:22:27 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Deployment-Architecture/Securing-UF-IDX-traffic-using-SSL-TLS-in-Splunk-Practical-Lab/m-p/740482#M29224</guid>
      <dc:creator>shabamichae</dc:creator>
      <dc:date>2025-03-02T04:22:27Z</dc:date>
    </item>
    <item>
      <title>Re: Securing UF-IDX traffic using SSL/TLS  in Splunk Practical Lab Exam</title>
      <link>https://community.splunk.com/t5/Deployment-Architecture/Securing-UF-IDX-traffic-using-SSL-TLS-in-Splunk-Practical-Lab/m-p/740483#M29225</link>
      <description>&lt;P&gt;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/239337"&gt;@shabamichae&lt;/a&gt;&amp;nbsp;In the Splunk Architect practical lab exam, configuring TLS/SSL for Universal Forwarder (UF) to Indexer (IDX) communication is not strictly required unless explicitly mentioned in the exam requirements.&amp;nbsp;If the exam explicitly states that secure communication must be configured, then failing to implement SSL/TLS for UF-IDX traffic could result in&amp;nbsp;deductions.&amp;nbsp;Since time is limited, focus on core configurations (indexing, forwarding, clustering, search head deployment) first, then handle TLS if necessary.&lt;/P&gt;</description>
      <pubDate>Sun, 02 Mar 2025 04:37:13 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Deployment-Architecture/Securing-UF-IDX-traffic-using-SSL-TLS-in-Splunk-Practical-Lab/m-p/740483#M29225</guid>
      <dc:creator>kiran_panchavat</dc:creator>
      <dc:date>2025-03-02T04:37:13Z</dc:date>
    </item>
    <item>
      <title>Re: Securing UF-IDX traffic using SSL/TLS  in Splunk Practical Lab Exam</title>
      <link>https://community.splunk.com/t5/Deployment-Architecture/Securing-UF-IDX-traffic-using-SSL-TLS-in-Splunk-Practical-Lab/m-p/740515#M29226</link>
      <description>&lt;P&gt;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/264857"&gt;@kiran_panchavat&lt;/a&gt;&amp;nbsp;&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/239337"&gt;@shabamichae&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;This is not strictly true. According to the documentation "Participants then perform a mock deployment according to requirements which adhere to Splunk Deployment Methodology and best-practices." - SSL falls in to best-practice category here for both compression (for data transfer) and security benefits.&lt;/P&gt;&lt;P&gt;Whilst not including SSL between Splunk servers might not result in a failing the the lab, there isnt a zero chance that it wont deduct marks which could affect the final score/outcome. Remember that this is one of the prereqs to Core Consulting certification and at this point it is expected that candidates will apply configuration that is most suitable to the customer.&lt;/P&gt;&lt;P&gt;Splunk Lantern (great for some best-practice guidance) has a good page on SSL:&amp;nbsp;&lt;A href="https://lantern.splunk.com/Splunk_Platform/Product_Tips/Administration/Securing_the_Splunk_platform_with_TLS" target="_blank" rel="noopener"&gt;https://lantern.splunk.com/Splunk_Platform/Product_Tips/Administration/Securing_the_Splunk_platform_with_TLS&lt;/A&gt;&lt;/P&gt;&lt;P&gt;You can also see more info on enabling SSL at&amp;nbsp;&lt;A href="https://docs.splunk.com/Documentation/Splunk/9.4.0/Security/StepstosecuringSplunkwithTLS" target="_blank" rel="noopener"&gt;https://docs.splunk.com/Documentation/Splunk/9.4.0/Security/StepstosecuringSplunkwithTLS&lt;/A&gt;&lt;/P&gt;&lt;P&gt;Please let me know how you get on and consider adding karma to this or any other answer if it has helped.&lt;BR /&gt;Regards&lt;/P&gt;&lt;P&gt;Will&lt;/P&gt;</description>
      <pubDate>Sun, 02 Mar 2025 16:16:03 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Deployment-Architecture/Securing-UF-IDX-traffic-using-SSL-TLS-in-Splunk-Practical-Lab/m-p/740515#M29226</guid>
      <dc:creator>livehybrid</dc:creator>
      <dc:date>2025-03-02T16:16:03Z</dc:date>
    </item>
    <item>
      <title>Re: Securing UF-IDX traffic using SSL/TLS  in Splunk Practical Lab Exam</title>
      <link>https://community.splunk.com/t5/Deployment-Architecture/Securing-UF-IDX-traffic-using-SSL-TLS-in-Splunk-Practical-Lab/m-p/740517#M29228</link>
      <description>Best option is ask is it mandatory or not in that phase.&lt;BR /&gt;I’m not sure if this is exactly required or not.</description>
      <pubDate>Sun, 02 Mar 2025 17:06:10 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Deployment-Architecture/Securing-UF-IDX-traffic-using-SSL-TLS-in-Splunk-Practical-Lab/m-p/740517#M29228</guid>
      <dc:creator>isoutamo</dc:creator>
      <dc:date>2025-03-02T17:06:10Z</dc:date>
    </item>
  </channel>
</rss>

