Getting Data In

Universal Forwarder and Deployment Server with SSL how to?

fernandoandre
Communicator

If I want to use SSL in communications between UFs (Universal Forwarders) and DS (Deployment Server) how can I during installation of UF state that it must use some particular ssl-cert-path and ssl-root-ca-path?

Typical UF install:

1) rpm -i splunk_package_name.rpm
2) splunk start --accept-license
3) splunk enable boot-start
4) splunk set deploy-poll host:port
5) splunk add forward-server host:port -ssl-cert-path /path/ssl.crt -ssl-root-ca-path /path/ca.crt -ssl-password *password*

For the receiver (usually an Indexer) it's possible to setup during installation the "ssl-cert-path and ssl-root-ca-path" (step 5). How to do the same for the Deployment server (step 4)?

I'm not able to find this information anywhere.

Thank you.

hkeyser
Splunk Employee
Splunk Employee
0 Karma

Shinpo
New Member

I have the same problem .... some help?

0 Karma
Get Updates on the Splunk Community!

Splunk Cloud | Empowering Splunk Administrators with Admin Config Service (ACS)

Greetings, Splunk Cloud Admins and Splunk enthusiasts! The Admin Configuration Service (ACS) team is excited ...

Tech Talk | One Log to Rule Them All

One log to rule them all: how you can centralize your troubleshooting with Splunk logs We know how important ...

Splunk Security Content for Threat Detection & Response, Q1 Roundup

Join Principal Threat Researcher, Michael Haag, as he walks through: An introduction to the Splunk Threat ...