Security

Is it possible to force TLS version when using LDAPS for authentication?

nmssplunkteam
New Member

Due to some old equipment in our environment, we need to use TLS 1.0 or 1.1 for our AD authentication. Splunk seems to default to TLS 1.2 which isn't working. Is it possible to force Splunk to use an earlier version or to at least allow for downrevving to an earlier version if 1.2 negotiation doesn't work?

0 Karma

nmssplunkteam
New Member

We were able to get this answered by our Splunk rep, but figured it should be available out there a little easier to find. We had to put the following line in our /opt/splunk/etc/openldap/ldap.conf file to force the specific TLS version:

TLS_CIPHER_SUITE TLSv1+RSA:!EXPORT:!NULL

0 Karma
Get Updates on the Splunk Community!

Introducing the Splunk Community Dashboard Challenge!

Welcome to Splunk Community Dashboard Challenge! This is your chance to showcase your skills in creating ...

Built-in Service Level Objectives Management to Bridge the Gap Between Service & ...

Wednesday, May 29, 2024  |  11AM PST / 2PM ESTRegister now and join us to learn more about how you can ...

Get Your Exclusive Splunk Certified Cybersecurity Defense Engineer Certification at ...

We’re excited to announce a new Splunk certification exam being released at .conf24! If you’re headed to Vegas ...