Splunk Enterprise

Connection from UF to Deployment Server: SSL issue

d4wc3k
Path Finder

Hello everyone

I have linux server machine  (CentOS 7) where Splunk universal ( version 8.0.3 ) has been installed
After installation of agent there was deployed app for connecting on deployment server.
Unfortunately machine is not visible in DS, First I have checked if dns name of DS can be resolved there and if host can communicate with DS on 8089 dest port at all with telnet program. There were not find any issues.
I decided to look at internal splunk logs by following search:
index=_internal earliest=-20d@d latest=now hostname OR x.x.x.x sourcetype=splunkd
( where x.x.x.x is IP of linux server)
I could see following warning there:
"
02-03-2021 08:04:09.080 +0100 WARN HttpListener - Socket error from x.x.x.x:13258 while idling: error:1408F10B:SSL routines:SSL3_GET_RECORD:wrong version numb
"
My question can that error be related to problem with connection between linux server and DS ?
If yes, how i can resolve that issue.

On DS i have installed following version of Splunk:
Splunk 7.2.0 (build 8c86330ac18)

Thanks in advance for your help

BR
Dawid

Labels (1)
0 Karma

isoutamo
SplunkTrust
SplunkTrust

Hi

at least indexers must be at same version or greater than UFs. So I propose that you must update your DS to the newer version. It must be a Linux version as you have other than windows UFs in use. If you have separate LM then also that must be a highest version in use.

r. Ismo

0 Karma

d4wc3k
Path Finder

Hi

Thanks for answer.
I don't think so that i should do this.
I have other machines which are using newer UF and they are working without any problems.

BR
Dawid

0 Karma
Get Updates on the Splunk Community!

Index This | Why did the turkey cross the road?

November 2025 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  🚀 Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Feel the Splunk Love: Real Stories from Real Customers

Hello Splunk Community,    What’s the best part of hearing how our customers use Splunk? Easy: the positive ...