if we have an Enterprise license can we get rid of [lmpool:auto_generated_pool_download-trial] from our server.conf file I read the documentation in the server.conf write up and it is totally l...
There is a practice of setting queueSize in inputs.conf [http://<token>] stanza. queueSize over writes server.conf stanza [queue=httpInputQ]
maxSize Now if y...
we have an Indexer Cluster and the Indexers have a [clustering] stanza in their server.conf files, same goes for the Search Heads, however do the two Deployment servers that we have need a [c...
Hello,
We are running Splunk 4.1.4 and I have enabled sslv3 and that works fine, however I am unable to specify (and make work) strong ciphers.
We need to specifically disable DES-CBC-SHA
...
I'm trying to write a script to change the local/server.conf settings in a large number of splunkforwarders. Mainly I am trying to disable SSL settings so that they stop showing up in security scans....
Good day All!
UF version 8.2.9 on a series of Linux machines.
I've an application containing local/server.conf deploying to a series of Linux machines.
The machines have a mixed configuration o...
Hi All,
We have an indexer cluster and cluster master. we need to add the parameter below in the indexer cluster server.conf file. Can you please let me know where I need to add this and how to p...
I am going to create a multiple site cluster with Splunk 6.5 enterprise.
According to Splunk document of "Configure multisite indexer clusters with server.conf". the "mode" under "[clustering]" s...
In server.conf.spec, it is indicated that requireClientCert = true can be set to require HTTPS clients connecting to splunkd to present a certificate signed by the CA whose public certificate we d...
The splunk version is 7.1.0.
Here is the default cipher from server.conf
[sslConfig]
sslVersions = tls1.2
sslVersionsForClient = tls1.2
cipherSuite = ECDHE-ECDSA-AES256-GCM-SHA384:ECDHE-RSA-A...