Getting Data In

If my windows firewall service is Stopped - will Splunk have any trouble ?

chimbudp
Contributor

For Splunk to run , do firewall service needs to be enabled ?

If i disable the firewall - Is splunk expected to work or not ?

Tags (1)
0 Karma

DaveSavage
Builder

If there is an active firewall in place of any type then it would need to be configured to allow your TCP or UDP traffic through it for the respective ports. If it isn't enabled, then there are no such constraints. Splunk doesn't care...as in your forwarders will attempt to send regardless. Splunk doesn't 'know' about your firewalls unless they are being log monitored as well by an app.

chimbudp
Contributor

Yes got it.

0 Karma
Get Updates on the Splunk Community!

Stay Connected: Your Guide to May Tech Talks, Office Hours, and Webinars!

Take a look below to explore our upcoming Community Office Hours, Tech Talks, and Webinars this month. This ...

They're back! Join the SplunkTrust and MVP at .conf24

With our highly anticipated annual conference, .conf, comes the fez-wearers you can trust! The SplunkTrust, as ...

Enterprise Security Content Update (ESCU) | New Releases

Last month, the Splunk Threat Research Team had two releases of new security content via the Enterprise ...