<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Hunk X509 authentication for Splunk virtual index in All Apps and Add-ons</title>
    <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Hunk-X509-authentication-for-Splunk-virtual-index/m-p/306647#M36639</link>
    <description>&lt;P&gt;Splunk 7.0.2 Mongo 3.6&lt;BR /&gt;
Trying to create a virtual index that uses X509 cert instead of the CR username and pw. Have found a couple sources that recommend using:&lt;/P&gt;

&lt;P&gt;vix.mongodb.auth.mechanism = X509 &lt;BR /&gt;
vix.mongodb.auth.username = [username]&lt;/P&gt;

&lt;P&gt;&lt;STRONG&gt;Only issue here is there is no path to the keycert.pem and ca.cert.pem.&lt;/STRONG&gt; The splunk answers have this "what about the path" question in the comments but no answers. Any ideas?&lt;/P&gt;

&lt;P&gt;EDIT: &lt;BR /&gt;
Hoping this makes the question a bit more clear. What I'm trying to do is ingest data from a remote mongo database. I have data on 192.168.1.1 in mongo and need to pull it into splunk on 192.168.1.2. In the splunk GUI, Settings &amp;gt; Virtual Indexes, I set up my provider (connection to remote server with mongo db) then set up the virtual index with the credentials to access that data base and the collection I want to ingest. &lt;BR /&gt;
&lt;STRONG&gt;&lt;EM&gt;It's working with un/pw credentials but I need to set up a X509 cert auth.&lt;/EM&gt;&lt;/STRONG&gt;&lt;/P&gt;</description>
    <pubDate>Wed, 28 Mar 2018 21:17:17 GMT</pubDate>
    <dc:creator>shivamgoyal23</dc:creator>
    <dc:date>2018-03-28T21:17:17Z</dc:date>
    <item>
      <title>Hunk X509 authentication for Splunk virtual index</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Hunk-X509-authentication-for-Splunk-virtual-index/m-p/306647#M36639</link>
      <description>&lt;P&gt;Splunk 7.0.2 Mongo 3.6&lt;BR /&gt;
Trying to create a virtual index that uses X509 cert instead of the CR username and pw. Have found a couple sources that recommend using:&lt;/P&gt;

&lt;P&gt;vix.mongodb.auth.mechanism = X509 &lt;BR /&gt;
vix.mongodb.auth.username = [username]&lt;/P&gt;

&lt;P&gt;&lt;STRONG&gt;Only issue here is there is no path to the keycert.pem and ca.cert.pem.&lt;/STRONG&gt; The splunk answers have this "what about the path" question in the comments but no answers. Any ideas?&lt;/P&gt;

&lt;P&gt;EDIT: &lt;BR /&gt;
Hoping this makes the question a bit more clear. What I'm trying to do is ingest data from a remote mongo database. I have data on 192.168.1.1 in mongo and need to pull it into splunk on 192.168.1.2. In the splunk GUI, Settings &amp;gt; Virtual Indexes, I set up my provider (connection to remote server with mongo db) then set up the virtual index with the credentials to access that data base and the collection I want to ingest. &lt;BR /&gt;
&lt;STRONG&gt;&lt;EM&gt;It's working with un/pw credentials but I need to set up a X509 cert auth.&lt;/EM&gt;&lt;/STRONG&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 28 Mar 2018 21:17:17 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Hunk-X509-authentication-for-Splunk-virtual-index/m-p/306647#M36639</guid>
      <dc:creator>shivamgoyal23</dc:creator>
      <dc:date>2018-03-28T21:17:17Z</dc:date>
    </item>
    <item>
      <title>Re: Hunk X509 authentication for Splunk virtual index</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Hunk-X509-authentication-for-Splunk-virtual-index/m-p/306648#M36640</link>
      <description>&lt;P&gt;Can you try :&lt;/P&gt;

&lt;PRE&gt;&lt;CODE&gt;vix.mongodb.auth.mechanism = X509 
vix.mongodb.auth.username = [username]
&lt;/CODE&gt;&lt;/PRE&gt;</description>
      <pubDate>Thu, 29 Mar 2018 11:47:23 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Hunk-X509-authentication-for-Splunk-virtual-index/m-p/306648#M36640</guid>
      <dc:creator>p_gurav</dc:creator>
      <dc:date>2018-03-29T11:47:23Z</dc:date>
    </item>
    <item>
      <title>Re: Hunk X509 authentication for Splunk virtual index</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Hunk-X509-authentication-for-Splunk-virtual-index/m-p/306649#M36641</link>
      <description>&lt;P&gt;Refer this video for virtual index:&lt;BR /&gt;
&lt;A href="https://www.youtube.com/watch?v=O6ZRP3VBn7I"&gt;https://www.youtube.com/watch?v=O6ZRP3VBn7I&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 29 Mar 2018 11:50:38 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Hunk-X509-authentication-for-Splunk-virtual-index/m-p/306649#M36641</guid>
      <dc:creator>p_gurav</dc:creator>
      <dc:date>2018-03-29T11:50:38Z</dc:date>
    </item>
    <item>
      <title>Re: Hunk X509 authentication for Splunk virtual index</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Hunk-X509-authentication-for-Splunk-virtual-index/m-p/306650#M36642</link>
      <description>&lt;P&gt;Thanks @p_gurav for your reply. I am actually looking for the configuration settings i.e. where i can provide the path to X509 certificates. It will be helpful if you can provide me with those.&lt;/P&gt;</description>
      <pubDate>Thu, 29 Mar 2018 13:37:08 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Hunk-X509-authentication-for-Splunk-virtual-index/m-p/306650#M36642</guid>
      <dc:creator>shivamgoyal23</dc:creator>
      <dc:date>2018-03-29T13:37:08Z</dc:date>
    </item>
    <item>
      <title>Re: Hunk X509 authentication for Splunk virtual index</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Hunk-X509-authentication-for-Splunk-virtual-index/m-p/306651#M36643</link>
      <description>&lt;P&gt;Have you tried to first add the certificate using a mongo shell to mongodb, and only then try to connect using the Splunk App?&lt;BR /&gt;
See the steps at the bottom of this page:&lt;BR /&gt;
&lt;A href="https://docs.mongodb.com/manual/tutorial/configure-x509-client-authentication/"&gt;https://docs.mongodb.com/manual/tutorial/configure-x509-client-authentication/&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 30 Mar 2018 21:58:46 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Hunk-X509-authentication-for-Splunk-virtual-index/m-p/306651#M36643</guid>
      <dc:creator>rdagan_splunk</dc:creator>
      <dc:date>2018-03-30T21:58:46Z</dc:date>
    </item>
    <item>
      <title>Re: Hunk X509 authentication for Splunk virtual index</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Hunk-X509-authentication-for-Splunk-virtual-index/m-p/306652#M36644</link>
      <description>&lt;P&gt;@rdagan Thanks for your reply. Yes, I have already added those to mongodb and also I am able to access the mongodb using terminal. The part I am not able to figure out is where I should be providing the path to certificates on Splunk for Virtual Indexes while creating them. Thanks &lt;/P&gt;</description>
      <pubDate>Mon, 02 Apr 2018 14:21:43 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Hunk-X509-authentication-for-Splunk-virtual-index/m-p/306652#M36644</guid>
      <dc:creator>shivamgoyal23</dc:creator>
      <dc:date>2018-04-02T14:21:43Z</dc:date>
    </item>
    <item>
      <title>Re: Hunk X509 authentication for Splunk virtual index</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Hunk-X509-authentication-for-Splunk-virtual-index/m-p/306653#M36645</link>
      <description>&lt;P&gt;@rdagan it will be great if you can provide some insight on the above asked question.&lt;/P&gt;</description>
      <pubDate>Mon, 02 Apr 2018 21:00:07 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Hunk-X509-authentication-for-Splunk-virtual-index/m-p/306653#M36645</guid>
      <dc:creator>shivamgoyal23</dc:creator>
      <dc:date>2018-04-02T21:00:07Z</dc:date>
    </item>
    <item>
      <title>Re: Hunk X509 authentication for Splunk virtual index</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Hunk-X509-authentication-for-Splunk-virtual-index/m-p/306654#M36646</link>
      <description>&lt;P&gt;In that case, you may want to try one of these options:&lt;BR /&gt;
1) Modify the Java code of the App itself to include the option to add a path to the certificate&lt;BR /&gt;
2) Experiment with Splunk DB Connect and see if the MongoDB JDBC driver includes the option to authenticate using X509&lt;BR /&gt;
3) Remove the requirement for X509 and replace it with one of the other authentication options&lt;/P&gt;</description>
      <pubDate>Thu, 05 Apr 2018 16:07:53 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Hunk-X509-authentication-for-Splunk-virtual-index/m-p/306654#M36646</guid>
      <dc:creator>rdagan_splunk</dc:creator>
      <dc:date>2018-04-05T16:07:53Z</dc:date>
    </item>
    <item>
      <title>Re: Hunk X509 authentication for Splunk virtual index</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Hunk-X509-authentication-for-Splunk-virtual-index/m-p/306655#M36647</link>
      <description>&lt;P&gt;@rdagan thanks a lot for your input. I will look into the options you provided and will update here if anything works out well.&lt;/P&gt;</description>
      <pubDate>Thu, 05 Apr 2018 18:49:38 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Hunk-X509-authentication-for-Splunk-virtual-index/m-p/306655#M36647</guid>
      <dc:creator>shivamgoyal23</dc:creator>
      <dc:date>2018-04-05T18:49:38Z</dc:date>
    </item>
  </channel>
</rss>

