<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: What version of SSL does splunkd use? in Splunk Search</title>
    <link>https://community.splunk.com/t5/Splunk-Search/What-version-of-SSL-does-splunkd-use/m-p/76023#M181442</link>
    <description>&lt;P&gt;Is it only necessary to set 'supportSSLV3Only = true' in web.conf if enableSplunkWebSSL is also set to "true"? We do not currently have enableSplunkWebSSL defined so, based on the documentation, it appears enableSplunkWebSSL is "false" by default.&lt;/P&gt;</description>
    <pubDate>Tue, 16 Apr 2013 17:06:48 GMT</pubDate>
    <dc:creator>kenshuff</dc:creator>
    <dc:date>2013-04-16T17:06:48Z</dc:date>
    <item>
      <title>What version of SSL does splunkd use?</title>
      <link>https://community.splunk.com/t5/Splunk-Search/What-version-of-SSL-does-splunkd-use/m-p/76017#M181436</link>
      <description>&lt;P&gt;We have Splunk 4.2.3 installed on some Linux hardened servers. Our Security team recently ran some scans and expressed concern regarding SSL on port 8089. After researching we determined that this port is used for Splunk deployment communication. &lt;/P&gt;

&lt;P&gt;It seems that their concern is that the SSL version is too low. They would like to see at least version v3TL1. &lt;/P&gt;

&lt;P&gt;I'm not very familiar with SSL. Could you tell me what SSL version Splunk uses? Is it possible to upgrade? What version of SSL does 4.3 use? &lt;/P&gt;

&lt;P&gt;Thanks, &lt;/P&gt;</description>
      <pubDate>Tue, 21 Feb 2012 18:13:58 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/What-version-of-SSL-does-splunkd-use/m-p/76017#M181436</guid>
      <dc:creator>Mick</dc:creator>
      <dc:date>2012-02-21T18:13:58Z</dc:date>
    </item>
    <item>
      <title>Re: What version of SSL does splunkd use?</title>
      <link>https://community.splunk.com/t5/Splunk-Search/What-version-of-SSL-does-splunkd-use/m-p/76018#M181437</link>
      <description>&lt;P&gt;Splunk 4.3 uses OpenSSL version 0.9.8r (&lt;A href="http://docs.splunk.com/Documentation/Splunk/4.3/ReleaseNotes/openssl"&gt;http://docs.splunk.com/Documentation/Splunk/4.3/ReleaseNotes/OpenSSL)&lt;/A&gt;. OpenSSL implements SSL v2/v3 and TLS v1 (&lt;A href="http://www.openssl.org/"&gt;http://www.openssl.org/&lt;/A&gt; ).&lt;/P&gt;</description>
      <pubDate>Tue, 21 Feb 2012 18:21:08 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/What-version-of-SSL-does-splunkd-use/m-p/76018#M181437</guid>
      <dc:creator>ChrisG</dc:creator>
      <dc:date>2012-02-21T18:21:08Z</dc:date>
    </item>
    <item>
      <title>Re: What version of SSL does splunkd use?</title>
      <link>https://community.splunk.com/t5/Splunk-Search/What-version-of-SSL-does-splunkd-use/m-p/76019#M181438</link>
      <description>&lt;P&gt;Not sure what V3TL1 is.  Looking at their OpenSSL's tarball repository, while 0.9.8r is a year old there's only 2 later versions of 0.9.8 available, and a couple 1.0.0 releases.&lt;/P&gt;

&lt;P&gt;Are you sure it's OpenSSL versions, rather than supported/allowed cipher suites?&lt;/P&gt;</description>
      <pubDate>Tue, 21 Feb 2012 21:32:51 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/What-version-of-SSL-does-splunkd-use/m-p/76019#M181438</guid>
      <dc:creator>mikelanghorst</dc:creator>
      <dc:date>2012-02-21T21:32:51Z</dc:date>
    </item>
    <item>
      <title>Re: What version of SSL does splunkd use?</title>
      <link>https://community.splunk.com/t5/Splunk-Search/What-version-of-SSL-does-splunkd-use/m-p/76020#M181439</link>
      <description>&lt;P&gt;After further discussions it seems that the issue is that the security scan found the deployment port to be using SSL version 2. Is there a way to control what version of SSL is used? Can we make a parameter change to force SSL version 3 to be used? Thanks.&lt;/P&gt;</description>
      <pubDate>Fri, 24 Feb 2012 18:22:41 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/What-version-of-SSL-does-splunkd-use/m-p/76020#M181439</guid>
      <dc:creator>kenshuff</dc:creator>
      <dc:date>2012-02-24T18:22:41Z</dc:date>
    </item>
    <item>
      <title>Re: What version of SSL does splunkd use?</title>
      <link>https://community.splunk.com/t5/Splunk-Search/What-version-of-SSL-does-splunkd-use/m-p/76021#M181440</link>
      <description>&lt;P&gt;Yes, you can. To disable SSLv2 and tell the HTTP server to only accept connections from SSLv3 clients, set the supportSSLV3Only attribute in server.conf to true. By default, this setting is false. This information comes from &lt;A href="http://docs.splunk.com/Documentation/Splunk/4.3/admin/SecureAccessToYourSplunkServerWithSSL#Disable_SSLv2"&gt;Secure Access to your Splunk Server&lt;/A&gt; in the Admin Manual.&lt;/P&gt;</description>
      <pubDate>Fri, 24 Feb 2012 19:36:21 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/What-version-of-SSL-does-splunkd-use/m-p/76021#M181440</guid>
      <dc:creator>ChrisG</dc:creator>
      <dc:date>2012-02-24T19:36:21Z</dc:date>
    </item>
    <item>
      <title>Re: What version of SSL does splunkd use?</title>
      <link>https://community.splunk.com/t5/Splunk-Search/What-version-of-SSL-does-splunkd-use/m-p/76022#M181441</link>
      <description>&lt;P&gt;In order to completely disable SSLv2 on the Splunk WebUI you must modify two files.  Making the change in only the /opt/splunk/etc/system/default/server.conf does not disable SSLv2.  You must also make the same 'supportSSLV3Only = true' edit to the /opt/splunk/etc/system/default/web.conf file.  We continued to see the SSLv2 vulnerability until we made the change to the server.conf AND web.conf file.&lt;/P&gt;</description>
      <pubDate>Fri, 12 Apr 2013 19:06:59 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/What-version-of-SSL-does-splunkd-use/m-p/76022#M181441</guid>
      <dc:creator>smixsonfujitsu</dc:creator>
      <dc:date>2013-04-12T19:06:59Z</dc:date>
    </item>
    <item>
      <title>Re: What version of SSL does splunkd use?</title>
      <link>https://community.splunk.com/t5/Splunk-Search/What-version-of-SSL-does-splunkd-use/m-p/76023#M181442</link>
      <description>&lt;P&gt;Is it only necessary to set 'supportSSLV3Only = true' in web.conf if enableSplunkWebSSL is also set to "true"? We do not currently have enableSplunkWebSSL defined so, based on the documentation, it appears enableSplunkWebSSL is "false" by default.&lt;/P&gt;</description>
      <pubDate>Tue, 16 Apr 2013 17:06:48 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/What-version-of-SSL-does-splunkd-use/m-p/76023#M181442</guid>
      <dc:creator>kenshuff</dc:creator>
      <dc:date>2013-04-16T17:06:48Z</dc:date>
    </item>
    <item>
      <title>Re: What version of SSL does splunkd use?</title>
      <link>https://community.splunk.com/t5/Splunk-Search/What-version-of-SSL-does-splunkd-use/m-p/76024#M181443</link>
      <description>&lt;P&gt;Never make changes to the files in default! Always make changes to the equivalent file in the local space, in this case /opt/splunk/etc/system/server.conf and web.conf. Making changes in default may be overridden when Splunk is upgraded. See &lt;A href="http://docs.splunk.com/Documentation/Splunk/6.0.1/Admin/Howtoeditaconfigurationfile"&gt;http://docs.splunk.com/Documentation/Splunk/6.0.1/Admin/Howtoeditaconfigurationfile&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 27 Jan 2014 21:05:46 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/What-version-of-SSL-does-splunkd-use/m-p/76024#M181443</guid>
      <dc:creator>ckurtz</dc:creator>
      <dc:date>2014-01-27T21:05:46Z</dc:date>
    </item>
  </channel>
</rss>

