Security

Updating internal SHA2 Intermediate certificate

becksyboy
Contributor

Hi All,

we have been informed our current/valid internal SHA2 Intermediate certificate is being replaced with a newer version. The Certificate management team has asked that the new one sit along side the older/current one on all systems which need it.

I'm aware of the importance of the certificate chain, and was wondering if just inserting the new internal SHA2 Intermediate certificate details in our chain after the current/older one for the current .pem certificates would be valid?

Example below for our Splunk forwarders:

-----BEGIN CERTIFICATE----- >>> splunkforwarder host
-----END CERTIFICATE-----
-----BEGIN RSA PRIVATE KEY----- >>> splunkforwarder.key
-----END RSA PRIVATE KEY-----
-----BEGIN CERTIFICATE----- >> CURRENT Intermediate details
-----END CERTIFICATE------
-----BEGIN CERTIFICATE----- >> INSERT NEW Intermediate details here
-----END CERTIFICATE-----

-----BEGIN CERTIFICATE----- >>> ROOT details
-----END CERTIFICATE-----

thanks

Tags (2)
0 Karma
Get Updates on the Splunk Community!

Announcing the Expansion of the Splunk Academic Alliance Program

The Splunk Community is more than just an online forum — it’s a network of passionate users, administrators, ...

Learn Splunk Insider Insights, Do More With Gen AI, & Find 20+ New Use Cases You Can ...

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...

Buttercup Games: Further Dashboarding Techniques (Part 7)

This series of blogs assumes you have already completed the Splunk Enterprise Search Tutorial as it uses the ...