My question is, how can I prove that the Splunk server.conf enableSplunkdSSL is indeed working and with the sslVersions is as per my settings, preferably with splunk internal logs SPL showing that?
I found the internal logs to confirm which version of SSL is being used.
For web.conf - index=_internal component=UiHttpListener host=<host you want to verify>
For server.conf - index=_internal component=loader host=<host you want to verify>
I found the internal logs to confirm which version of SSL is being used.
For web.conf - index=_internal component=UiHttpListener host=<host you want to verify>
For server.conf - index=_internal component=loader host=<host you want to verify>
Hi
you can try this:
index=_internal component=loader "Server supporting SSL"
r. Ismo
I've managed to find that logs, however the question is, it isn't clear that if those are from the web.conf or the server.conf config? Or is it that web.conf enableSplunkWebSSL wont have internal logs?