Security

Data encryption in Splunk

rayar
Contributor

Hi

we are using Splunk 7.3.4 , wanted to confirm the data indexed is not encrypted by default 

0 Karma
1 Solution

tscroggins
Influencer

@rayar 

Raw data is compressed (see journalCompression in https://docs.splunk.com/Documentation/Splunk/7.3.4/Admin/Indexesconf), but it is not encrypted.

Splunk offers encryption at rest in the Splunk Cloud product.

On-premise solutions would typically use file system or block level encryption.

View solution in original post

0 Karma

tscroggins
Influencer

@rayar 

Raw data is compressed (see journalCompression in https://docs.splunk.com/Documentation/Splunk/7.3.4/Admin/Indexesconf), but it is not encrypted.

Splunk offers encryption at rest in the Splunk Cloud product.

On-premise solutions would typically use file system or block level encryption.

0 Karma
Get Updates on the Splunk Community!

Pro Tips for First-Time .conf Attendees: Advice from SplunkTrust

Heading to your first .Conf? You’re in for an unforgettable ride — learning, networking, swag collecting, ...

Raise Your Skills at the .conf25 Builder Bar: Your Splunk Developer Destination

Calling all Splunk developers, custom SPL builders, dashboarders, and Splunkbase app creators – the Builder ...

Hunt Smarter, Not Harder: Discover New SPL “Recipes” in Our Threat Hunting Webinar

Are you ready to take your threat hunting skills to the next level? As Splunk community members, you know the ...