Remove the connection with a Threat Intelligence Management (Cloud) tenant

Remove the connection between a Threat Intelligence Management (Cloud) tenant and your on-premises deployment of Splunk Enterprise Security. To remove the connection, you must delete the certificate.
Note: You can't delete certificates on a search head cluster.

Follow these steps to delete a certificate:

  1. In Splunk Enterprise Security, select Configure and then All configurations.
  2. Select General settings, and then select Credentials.
  3. On the Credential and certificate management page, select Delete in the Action column of a credential or certificate.
  4. Select OK to confirm.