Splunk Docs do not specifically state that default encryption is active between Universal Forwarders and Heavy Forwarders, is it?
Also, if a self-signed or third party cert is used for this environment, is the Universal Forwarder the "client" of the Heavy Forwarder in this example?
... View more