Installation

Is it ok to disable Splunk Secure Gateway?

fredclown
Builder

We have a Splunk install inside a network that will never be publicly accessible in any way shape or form. Seeing as this is the case is it ok to disable the Splunk Secure Gateway app that comes pre-installed? Are there other reasons I should keep it turned on?

Labels (1)
0 Karma
1 Solution

burwell
SplunkTrust
SplunkTrust

We have been disabling it since it was enabled by default in a previous 8.x version. 

Note that in 9.x there's a bug with the config tracker and disabling an app. See the known issues SPL 233484. We ended up configuring the config tracker to ignore the secure gateway app that we disabled.

View solution in original post

burwell
SplunkTrust
SplunkTrust

We have been disabling it since it was enabled by default in a previous 8.x version. 

Note that in 9.x there's a bug with the config tracker and disabling an app. See the known issues SPL 233484. We ended up configuring the config tracker to ignore the secure gateway app that we disabled.

Get Updates on the Splunk Community!

Upcoming Webinar: Unmasking Insider Threats with Slunk Enterprise Security’s UEBA

Join us on Wed, Dec 10. at 10AM PST / 1PM EST for a live webinar and demo with Splunk experts! Discover how ...

.conf25 technical session recap of Observability for Gen AI: Monitoring LLM ...

If you’re unfamiliar, .conf is Splunk’s premier event where the Splunk community, customers, partners, and ...

A Season of Skills: New Splunk Courses to Light Up Your Learning Journey

There’s something special about this time of year—maybe it’s the glow of the holidays, maybe it’s the ...