Installation

Is it ok to disable Splunk Secure Gateway?

fredclown
Builder

We have a Splunk install inside a network that will never be publicly accessible in any way shape or form. Seeing as this is the case is it ok to disable the Splunk Secure Gateway app that comes pre-installed? Are there other reasons I should keep it turned on?

Labels (1)
0 Karma
1 Solution

burwell
SplunkTrust
SplunkTrust

We have been disabling it since it was enabled by default in a previous 8.x version. 

Note that in 9.x there's a bug with the config tracker and disabling an app. See the known issues SPL 233484. We ended up configuring the config tracker to ignore the secure gateway app that we disabled.

View solution in original post

burwell
SplunkTrust
SplunkTrust

We have been disabling it since it was enabled by default in a previous 8.x version. 

Note that in 9.x there's a bug with the config tracker and disabling an app. See the known issues SPL 233484. We ended up configuring the config tracker to ignore the secure gateway app that we disabled.

Career Survey
First 500 qualified respondents will receive a $20 gift card! Tell us about your professional Splunk journey.
Get Updates on the Splunk Community!

Tech Talk Recap | Mastering Threat Hunting

Mastering Threat HuntingDive into the world of threat hunting, exploring the key differences between ...

Observability for AI Applications: Troubleshooting Latency

If you’re working with proprietary company data, you’re probably going to have a locally hosted LLM or many ...

Splunk AI Assistant for SPL vs. ChatGPT: Which One is Better?

In the age of AI, every tool promises to make our lives easier. From summarizing content to writing code, ...