The truststore and keystore to be used for the ADI Lumberjack TLS configuration.īoth files are protected by the export password used when exporting the host keys. Do not use it to configure the TLS configuration. The host keys DNS names must match the host names. Scenario: You want to configure a TLS communication between two filebeat agents (hosted on and ) and a Lumberjack connector in DI (hosted on ).įor that, use KeyStore Manager to create a new CA named Lumberjack (the CA name can be freely chosen) with 3 hosts, 2 of them exported in OpenSSL ( and ) and 1 in JKS ( ). The private key encryption algorithm to be used when exporting the host key in OpenSSL format. The default value is equivalent to 3 years. The number of days for certificates validity.
![keystore explorer. keystore explorer.](https://www.saashub.com/images/app/screenshots/46/4e9ce035ecf8/landing-medium.jpg)
The size of the private key that will be generated. PKCS12 is recommended since it is more secure and interoperable than JKS. The location of the exposed host key files. If changed, you must secure this location the way you did for /var in the Installation section.
Keystore explorer. full#
![keystore explorer. keystore explorer.](https://albertx.mx/wp-content/uploads/2020/06/KeyStore-Explorer-header-2-263x300.png)
Keystore explorer. install#
Else you can install in any writable location.
![keystore explorer. keystore explorer.](http://keystore-explorer.org/images/win10_quickstart.png)
On Windows to install in C:\Program Files, you must be an Administrator and grant the modification permission when asked by UAC. On Windows execute the following command to install in console mode: start /wait -c