<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Enable forward-server in Linux Universal Forwarder in Getting Data In</title>
    <link>https://community.splunk.com/t5/Getting-Data-In/Enable-forward-server-in-Linux-Universal-Forwarder/m-p/30104#M5232</link>
    <description>&lt;P&gt;Is there a way to change the password without using the "-password &lt;VALUE&gt;" parameter on the CLI to avoid using a script to keep .bash_history clean ? &lt;/VALUE&gt;&lt;/P&gt;</description>
    <pubDate>Tue, 30 Jul 2013 13:47:22 GMT</pubDate>
    <dc:creator>unwiresplunk</dc:creator>
    <dc:date>2013-07-30T13:47:22Z</dc:date>
    <item>
      <title>Enable forward-server in Linux Universal Forwarder</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Enable-forward-server-in-Linux-Universal-Forwarder/m-p/30100#M5228</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;

&lt;P&gt;I have some problems with running the following command.&lt;BR /&gt;&lt;BR /&gt;
$ splunk add forward-server host:port&lt;/P&gt;

&lt;P&gt;It asks for username and password, i assume that the credentials should be the ones used when logging in to the Splunk WebUI. But authentication fails. I have also tried with the credentials for the local Splunk account. But still no luck.&lt;/P&gt;

&lt;P&gt;When reading the Universal Deployment Manual I can not see any information about authentication. I have not added any SSL Cert, i guess this issue can be related to SSL communication between Forwarder and Reciever. But i just want to use the default certs.&lt;/P&gt;

&lt;P&gt;I have tried running the command both as root and splunk user. But no luck at all.&lt;/P&gt;

&lt;P&gt;Any ideas? &lt;/P&gt;</description>
      <pubDate>Fri, 17 Jun 2011 09:37:35 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Enable-forward-server-in-Linux-Universal-Forwarder/m-p/30100#M5228</guid>
      <dc:creator>frejen</dc:creator>
      <dc:date>2011-06-17T09:37:35Z</dc:date>
    </item>
    <item>
      <title>Re: Enable forward-server in Linux Universal Forwarder</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Enable-forward-server-in-Linux-Universal-Forwarder/m-p/30101#M5229</link>
      <description>&lt;P&gt;there is a small hint in the universalforwader docu.(i think its a comment)&lt;/P&gt;

&lt;P&gt;it is the default login:&lt;BR /&gt;
admin/changeme&lt;/P&gt;</description>
      <pubDate>Fri, 17 Jun 2011 09:49:02 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Enable-forward-server-in-Linux-Universal-Forwarder/m-p/30101#M5229</guid>
      <dc:creator>sergemueller</dc:creator>
      <dc:date>2011-06-17T09:49:02Z</dc:date>
    </item>
    <item>
      <title>Re: Enable forward-server in Linux Universal Forwarder</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Enable-forward-server-in-Linux-Universal-Forwarder/m-p/30102#M5230</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;

&lt;P&gt;Thank you that did the trick! But the password for "admin" i use to login to WebUI has been changed is not "changeme". How can i change that password? &lt;/P&gt;

&lt;P&gt;Frej&lt;/P&gt;</description>
      <pubDate>Fri, 17 Jun 2011 09:50:50 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Enable-forward-server-in-Linux-Universal-Forwarder/m-p/30102#M5230</guid>
      <dc:creator>frejen</dc:creator>
      <dc:date>2011-06-17T09:50:50Z</dc:date>
    </item>
    <item>
      <title>Re: Enable forward-server in Linux Universal Forwarder</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Enable-forward-server-in-Linux-Universal-Forwarder/m-p/30103#M5231</link>
      <description>&lt;P&gt;&lt;A href="http://splunk-base.splunk.com/answers/12638/prompt-for-splunk-user-when-configuring-universal-forwarder"&gt;http://splunk-base.splunk.com/answers/12638/prompt-for-splunk-user-when-configuring-universal-forwarder&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;search is your friend:)&lt;/P&gt;

&lt;P&gt;./splunk edit user admin -password coolNewP455w3rdddd&lt;/P&gt;</description>
      <pubDate>Fri, 17 Jun 2011 10:02:56 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Enable-forward-server-in-Linux-Universal-Forwarder/m-p/30103#M5231</guid>
      <dc:creator>sergemueller</dc:creator>
      <dc:date>2011-06-17T10:02:56Z</dc:date>
    </item>
    <item>
      <title>Re: Enable forward-server in Linux Universal Forwarder</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Enable-forward-server-in-Linux-Universal-Forwarder/m-p/30104#M5232</link>
      <description>&lt;P&gt;Is there a way to change the password without using the "-password &lt;VALUE&gt;" parameter on the CLI to avoid using a script to keep .bash_history clean ? &lt;/VALUE&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 30 Jul 2013 13:47:22 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Enable-forward-server-in-Linux-Universal-Forwarder/m-p/30104#M5232</guid>
      <dc:creator>unwiresplunk</dc:creator>
      <dc:date>2013-07-30T13:47:22Z</dc:date>
    </item>
    <item>
      <title>Re: Enable forward-server in Linux Universal Forwarder</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Enable-forward-server-in-Linux-Universal-Forwarder/m-p/30105#M5233</link>
      <description>&lt;P&gt;Yes, there is a way to change the password without using the -password parameter.&lt;/P&gt;

&lt;P&gt;See this article from Splunk:&lt;BR /&gt;
docs.splunk.com/Documentation/Splunk/5.0.3/Security/Deploysecurepasswordsacrossmultipleservers&lt;/P&gt;</description>
      <pubDate>Tue, 30 Jul 2013 15:55:44 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Enable-forward-server-in-Linux-Universal-Forwarder/m-p/30105#M5233</guid>
      <dc:creator>lukejadamec</dc:creator>
      <dc:date>2013-07-30T15:55:44Z</dc:date>
    </item>
    <item>
      <title>Re: Enable forward-server in Linux Universal Forwarder</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Enable-forward-server-in-Linux-Universal-Forwarder/m-p/30106#M5234</link>
      <description>&lt;P&gt;Thank you &lt;EM&gt;lukejadamec&lt;/EM&gt;, that was outside my thinking box at the time of writing - the file is like a htpasswd file... I should have noticed that &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt; Thanks&lt;/P&gt;</description>
      <pubDate>Wed, 31 Jul 2013 12:52:32 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Enable-forward-server-in-Linux-Universal-Forwarder/m-p/30106#M5234</guid>
      <dc:creator>unwiresplunk</dc:creator>
      <dc:date>2013-07-31T12:52:32Z</dc:date>
    </item>
  </channel>
</rss>

