<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Splunk Certificates renewal in Security</title>
    <link>https://community.splunk.com/t5/Security/Splunk-Certificates-renewal/m-p/331403#M8471</link>
    <description>&lt;P&gt;Hey Siva,&lt;/P&gt;

&lt;P&gt;You can run the btool command to identify the locations of the SSL certificates (for both splunkweb &amp;amp; encryption between forwarders &amp;amp; indexers) and replace them with the new ones.&lt;/P&gt;

&lt;P&gt;$ splunk btool web list --debug &lt;BR /&gt;
$ splunk btool server list --debug&lt;/P&gt;

&lt;P&gt;You need to find the path of the certificates from the above command's output and replace them with the new certificates. You need to generate new Selft-signed certificates by following the below splunk doc.&lt;/P&gt;

&lt;P&gt;For SplunkWeb: &lt;A href="https://docs.splunk.com/Documentation/Splunk/6.5.2/Security/Self-signcertificatesforSplunkWeb"&gt;https://docs.splunk.com/Documentation/Splunk/6.5.2/Security/Self-signcertificatesforSplunkWeb&lt;/A&gt;&lt;BR /&gt;
For Data encryption: &lt;A href="https://docs.splunk.com/Documentation/Splunk/6.5.2/Security/ConfigureSplunkforwardingtousesignedcertificates"&gt;https://docs.splunk.com/Documentation/Splunk/6.5.2/Security/ConfigureSplunkforwardingtousesignedcertificates&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;Hope the above helps!&lt;/P&gt;

&lt;P&gt;Cheers.&lt;/P&gt;</description>
    <pubDate>Tue, 22 Jan 2019 05:46:10 GMT</pubDate>
    <dc:creator>mbadhusha_splun</dc:creator>
    <dc:date>2019-01-22T05:46:10Z</dc:date>
    <item>
      <title>Splunk Certificates renewal</title>
      <link>https://community.splunk.com/t5/Security/Splunk-Certificates-renewal/m-p/331401#M8469</link>
      <description>&lt;P&gt;Hi Team,&lt;/P&gt;

&lt;P&gt;We have distributed environment with Search Heads and Indexers clustered and running on 6.5.2 version. We are using self signed SSL certificates for the communication between the servers and web. &lt;/P&gt;

&lt;P&gt;Few of my web connection certificates are expiring. So, I thought of renewing the certificates. Now, my question is, if I renew only web certificates or server to server certificates, will there be any impact on other connections?&lt;/P&gt;

&lt;P&gt;As I don't have any knowledge on SSL certificates (challenging it for the first time), I want to make sure, I am not breaking anything.&lt;/P&gt;

&lt;P&gt;Thanks in advance.&lt;/P&gt;</description>
      <pubDate>Tue, 06 Mar 2018 08:15:41 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/Splunk-Certificates-renewal/m-p/331401#M8469</guid>
      <dc:creator>siva_cg</dc:creator>
      <dc:date>2018-03-06T08:15:41Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk Certificates renewal</title>
      <link>https://community.splunk.com/t5/Security/Splunk-Certificates-renewal/m-p/331402#M8470</link>
      <description>&lt;P&gt;This link might help you:&lt;BR /&gt;
&lt;A href="http://wiki.splunk.com/Community:SplunkWeb_SSL_3rdPartyCA"&gt;http://wiki.splunk.com/Community:SplunkWeb_SSL_3rdPartyCA&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 06 Mar 2018 09:14:43 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/Splunk-Certificates-renewal/m-p/331402#M8470</guid>
      <dc:creator>p_gurav</dc:creator>
      <dc:date>2018-03-06T09:14:43Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk Certificates renewal</title>
      <link>https://community.splunk.com/t5/Security/Splunk-Certificates-renewal/m-p/331403#M8471</link>
      <description>&lt;P&gt;Hey Siva,&lt;/P&gt;

&lt;P&gt;You can run the btool command to identify the locations of the SSL certificates (for both splunkweb &amp;amp; encryption between forwarders &amp;amp; indexers) and replace them with the new ones.&lt;/P&gt;

&lt;P&gt;$ splunk btool web list --debug &lt;BR /&gt;
$ splunk btool server list --debug&lt;/P&gt;

&lt;P&gt;You need to find the path of the certificates from the above command's output and replace them with the new certificates. You need to generate new Selft-signed certificates by following the below splunk doc.&lt;/P&gt;

&lt;P&gt;For SplunkWeb: &lt;A href="https://docs.splunk.com/Documentation/Splunk/6.5.2/Security/Self-signcertificatesforSplunkWeb"&gt;https://docs.splunk.com/Documentation/Splunk/6.5.2/Security/Self-signcertificatesforSplunkWeb&lt;/A&gt;&lt;BR /&gt;
For Data encryption: &lt;A href="https://docs.splunk.com/Documentation/Splunk/6.5.2/Security/ConfigureSplunkforwardingtousesignedcertificates"&gt;https://docs.splunk.com/Documentation/Splunk/6.5.2/Security/ConfigureSplunkforwardingtousesignedcertificates&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;Hope the above helps!&lt;/P&gt;

&lt;P&gt;Cheers.&lt;/P&gt;</description>
      <pubDate>Tue, 22 Jan 2019 05:46:10 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/Splunk-Certificates-renewal/m-p/331403#M8471</guid>
      <dc:creator>mbadhusha_splun</dc:creator>
      <dc:date>2019-01-22T05:46:10Z</dc:date>
    </item>
  </channel>
</rss>

