<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Indexing data through TLS certificate in Getting Data In</title>
    <link>https://community.splunk.com/t5/Getting-Data-In/Indexing-data-through-TLS-certificate/m-p/709329#M117189</link>
    <description>&lt;P&gt;1.&amp;nbsp; Both ends must be using the same type of connection.&amp;nbsp; If the indexer is told to expect TLS then it will reject any non-TLS connection attempts.&amp;nbsp; Without a connection, data cannot be indexed.&lt;/P&gt;&lt;P&gt;2. Yes, it is possible and is done all the time in Splunk Cloud.&lt;/P&gt;&lt;P&gt;3. Yes, you can.&amp;nbsp; In fact, TLS and non-TLS connections *must* be on separate ports.&lt;/P&gt;</description>
    <pubDate>Tue, 21 Jan 2025 15:16:38 GMT</pubDate>
    <dc:creator>richgalloway</dc:creator>
    <dc:date>2025-01-21T15:16:38Z</dc:date>
    <item>
      <title>Indexing data through TLS certificate</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Indexing-data-through-TLS-certificate/m-p/709328#M117188</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;So I wanted to check some possibilities of indexing data using TLS/SSL certificates.&lt;/P&gt;&lt;P&gt;1. I configured TLS only on the indexer, not on the heavy forwarder and data stopped indexing, but why? I did the same in the opposite direction.&lt;/P&gt;&lt;P&gt;2. Is it possible to configure TLS/SSL certificates on the "universal forwarder" and make a connection with the indexer? Will it work?&lt;/P&gt;&lt;P&gt;3. Can we index data using two different ports? For example 9997 - without TLS and 9998 - with TLS.&lt;/P&gt;</description>
      <pubDate>Tue, 21 Jan 2025 15:04:50 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Indexing-data-through-TLS-certificate/m-p/709328#M117188</guid>
      <dc:creator>abhijeetbandre</dc:creator>
      <dc:date>2025-01-21T15:04:50Z</dc:date>
    </item>
    <item>
      <title>Re: Indexing data through TLS certificate</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Indexing-data-through-TLS-certificate/m-p/709329#M117189</link>
      <description>&lt;P&gt;1.&amp;nbsp; Both ends must be using the same type of connection.&amp;nbsp; If the indexer is told to expect TLS then it will reject any non-TLS connection attempts.&amp;nbsp; Without a connection, data cannot be indexed.&lt;/P&gt;&lt;P&gt;2. Yes, it is possible and is done all the time in Splunk Cloud.&lt;/P&gt;&lt;P&gt;3. Yes, you can.&amp;nbsp; In fact, TLS and non-TLS connections *must* be on separate ports.&lt;/P&gt;</description>
      <pubDate>Tue, 21 Jan 2025 15:16:38 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Indexing-data-through-TLS-certificate/m-p/709329#M117189</guid>
      <dc:creator>richgalloway</dc:creator>
      <dc:date>2025-01-21T15:16:38Z</dc:date>
    </item>
  </channel>
</rss>

