<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: From LDAP to LDAPS (LDAP + SSL enabled) in All Apps and Add-ons</title>
    <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/From-LDAP-to-LDAPS-LDAP-SSL-enabled/m-p/646154#M79250</link>
    <description>&lt;P&gt;Exactly that way.&lt;/P&gt;&lt;P&gt;If/when you have already working LDAP connection from splunk without TLS, it's usually just change those two items to get it working with TLS. Of course it needs that port 636 has opened on all FWs between splunk and your ldap server.&lt;/P&gt;</description>
    <pubDate>Wed, 07 Jun 2023 15:17:26 GMT</pubDate>
    <dc:creator>isoutamo</dc:creator>
    <dc:date>2023-06-07T15:17:26Z</dc:date>
    <item>
      <title>From LDAP to LDAPS (LDAP + SSL enabled)</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/From-LDAP-to-LDAPS-LDAP-SSL-enabled/m-p/646099#M79247</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;we're already using LDAP in order to access to Splunk, but now we need to "switch" to LDAPS.&lt;/P&gt;&lt;P&gt;I've read the port needs to be 636 and "SSL enabled" flagged, but the message "&lt;EM&gt;You must also have SSL enabled on your LDAP server&lt;/EM&gt;" confuses me.&lt;/P&gt;&lt;P&gt;Should I do something else? Do I need to change .pem certificate? If so, on the cluster master?&lt;/P&gt;&lt;P&gt;i've found this conf file:&amp;nbsp;$SPLUNK_HOME/etc/openldap/certs/ldap.conf, I guess I also need to modify it.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you in advance for any help you can offer.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="LDAP.JPG" style="width: 887px;"&gt;&lt;img src="https://community.splunk.com/t5/image/serverpage/image-id/25734i0AFE5C25BD59BA10/image-size/large?v=v2&amp;amp;px=999" role="button" title="LDAP.JPG" alt="LDAP.JPG" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 07 Jun 2023 12:10:54 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/From-LDAP-to-LDAPS-LDAP-SSL-enabled/m-p/646099#M79247</guid>
      <dc:creator>Marco-IT</dc:creator>
      <dc:date>2023-06-07T12:10:54Z</dc:date>
    </item>
    <item>
      <title>Re: From LDAP to LDAPS (LDAP + SSL enabled)</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/From-LDAP-to-LDAPS-LDAP-SSL-enabled/m-p/646108#M79248</link>
      <description>&lt;P&gt;Hi&lt;/P&gt;&lt;P&gt;LDAP without TLS normally use port 389 on LDAP server side. And TLS enabled it usually is 636. Of course those could be something else.&lt;/P&gt;&lt;P&gt;As error message said when you check "Enable SSL" box it just switch TLS protocol to use, but it didn't change your LDAP server's port. Now it try to connect with TLS to port which aren't use TLS so it failed. You need to change you host's port on configuration to 636 to use your LDAP server's TLS port aka LDAPS.&lt;/P&gt;&lt;P&gt;If these two things (enable ssl + change port) didn't help, then you must contact your LDAP admin and ask in which port it is running LDAPS and/or is it supporting LDAPS.&lt;/P&gt;&lt;P&gt;r. Ismo&lt;/P&gt;</description>
      <pubDate>Wed, 07 Jun 2023 13:25:03 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/From-LDAP-to-LDAPS-LDAP-SSL-enabled/m-p/646108#M79248</guid>
      <dc:creator>isoutamo</dc:creator>
      <dc:date>2023-06-07T13:25:03Z</dc:date>
    </item>
    <item>
      <title>Re: From LDAP to LDAPS (LDAP + SSL enabled)</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/From-LDAP-to-LDAPS-LDAP-SSL-enabled/m-p/646152#M79249</link>
      <description>&lt;P&gt;Thank you&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/214410"&gt;@isoutamo&lt;/a&gt;&amp;nbsp;for your answer!&lt;BR /&gt;So I understand I just need to change the port and flag the option "SSL enabled", right?&lt;/P&gt;&lt;P&gt;Nothing to do with the certificate? Is there a way to check what's the LDAP server from Splunk?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Marco&lt;/P&gt;</description>
      <pubDate>Wed, 07 Jun 2023 15:11:48 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/From-LDAP-to-LDAPS-LDAP-SSL-enabled/m-p/646152#M79249</guid>
      <dc:creator>Marco-IT</dc:creator>
      <dc:date>2023-06-07T15:11:48Z</dc:date>
    </item>
    <item>
      <title>Re: From LDAP to LDAPS (LDAP + SSL enabled)</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/From-LDAP-to-LDAPS-LDAP-SSL-enabled/m-p/646154#M79250</link>
      <description>&lt;P&gt;Exactly that way.&lt;/P&gt;&lt;P&gt;If/when you have already working LDAP connection from splunk without TLS, it's usually just change those two items to get it working with TLS. Of course it needs that port 636 has opened on all FWs between splunk and your ldap server.&lt;/P&gt;</description>
      <pubDate>Wed, 07 Jun 2023 15:17:26 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/From-LDAP-to-LDAPS-LDAP-SSL-enabled/m-p/646154#M79250</guid>
      <dc:creator>isoutamo</dc:creator>
      <dc:date>2023-06-07T15:17:26Z</dc:date>
    </item>
    <item>
      <title>Re: From LDAP to LDAPS (LDAP + SSL enabled)</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/From-LDAP-to-LDAPS-LDAP-SSL-enabled/m-p/646160#M79251</link>
      <description>&lt;P&gt;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/214410"&gt;@isoutamo&lt;/a&gt;&amp;nbsp;Great, and what about the new CA certificate I received? Where should I put it?&lt;/P&gt;</description>
      <pubDate>Wed, 07 Jun 2023 15:36:19 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/From-LDAP-to-LDAPS-LDAP-SSL-enabled/m-p/646160#M79251</guid>
      <dc:creator>Marco-IT</dc:creator>
      <dc:date>2023-06-07T15:36:19Z</dc:date>
    </item>
    <item>
      <title>Re: From LDAP to LDAPS (LDAP + SSL enabled)</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/From-LDAP-to-LDAPS-LDAP-SSL-enabled/m-p/646167#M79252</link>
      <description>&lt;P&gt;If your company is using private CA which are not known by your host you should ask that your server staff will add it as trust CAs on OS level.&lt;/P&gt;</description>
      <pubDate>Wed, 07 Jun 2023 15:55:28 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/From-LDAP-to-LDAPS-LDAP-SSL-enabled/m-p/646167#M79252</guid>
      <dc:creator>isoutamo</dc:creator>
      <dc:date>2023-06-07T15:55:28Z</dc:date>
    </item>
  </channel>
</rss>

