Getting Data In

disable port 443 on indexer

Path Finder

Is it possible to disable port 443 on indexers? If so how? Is there a CL or is it through the UI?

Tags (2)
0 Karma


Hm? Splunk doesn't open port 443 at all unless you configured it to do so in some way. It may listen to ports 9997 (log receiving), 8089 (intra-Splunk-traffic) or 8000 (splunkweb) depending on how you configured it, but 443, no.

0 Karma


Yes. If you do not need splunkweb on the indexer... you can just omit this or set it to 0 or just disable splunkweb.
"splunk disable webserver" and restart.

0 Karma

Path Finder

So we have a setting in our web.conf

httpport = 443

could this be causing it to be open?

0 Karma
Get Updates on the Splunk Community!

Splunk Security Content for Threat Detection & Response, Q1 Roundup

Join Principal Threat Researcher, Michael Haag, as he walks through:An introduction to the Splunk Threat ...

Splunk Life | Happy Pride Month!

Happy Pride Month, Splunk Community! 🌈 In the United States, as well as many countries around the ...

SplunkTrust | Where Are They Now - Michael Uschmann

The Background Five years ago, Splunk published several videos showcasing members of the SplunkTrust to share ...