OK so its not supported - but have a handfull of servers that i'd like to get a fwd on ..
installed the latest version for 2000 5.0.18 - its talking to the IDX but seeing a few errors for the DS :
02-13-2019 01:11:07.396 -0500 WARN DeploymentClient - Unable to send handshake message to deployment server. Error status is: not_connected
host = win2000 source = C:\Program Files\SplunkUniversalForwarder\var\log\splunk\splunkd.log sourcetype = splunkd
13/02/2019
17:10:50.827
02-13-2019 01:10:50.827 -0500 WARN DeploymentClient - Unable to send handshake message to deployment server. Error status is: not_connected
host = win2000 source = C:\Program Files\SplunkUniversalForwarder\var\log\splunk\splunkd.log sourcetype = splunkd
13/02/2019
17:06:13.201
02-13-2019 01:06:13.201 -0500 WARN DeploymentClient - Unable to send handshake message to deployment server. Error status is: not_connected
host = win2000 source = C:\Program Files\SplunkUniversalForwarder\var\log\splunk\splunkd.log sourcetype = splunkd
13/02/2019
17:06:18.328
02-13-2019 01:06:18.328 -0500 INFO HttpPubSubConnection - Could not obtain connection, will retry after 60 seconds.
host = win2000 source = C:\Program Files\SplunkUniversalForwarder\var\log\splunk\splunkd.log sourcetype = splunkd
13/02/2019
17:06:25.208
02-13-2019 01:06:25.208 -0500 WARN DeploymentClient - Unable to send handshake message to deployment server. Error status is: not_connected
host = win2000 source = C:\Program Files\SplunkUniversalForwarder\var\log\splunk\splunkd.log sourcetype = splunkd
IS this because the old UF uses TLS 1.0 wheres as we are now on TLS 1.2
This looks similar to :
https://answers.splunk.com/answers/713063/if-i-upgrade-to-splunk-enterprise-70-can-i-recieve.html
Is it possible ?
Gratzi