Upload SSL certificates
Upload existing SSL certificates for securing communication between AgentX Server and AgentX Clients.
Prerequisites
AgentX Server installed in Logpoint
AgentX Manager installed in Logpoint
Administrator access to Logpoint
Existing SSL certificates (rootCA.pem, sslagent.cert, sslagent.key)
In distributed Logpoint setups, you must upload certificates on the Search Head
Procedure
Go to Settings > Configuration and select AgentX.
Select Certificates.
Select Browse and locate your rootCA.pem file.
Select Upload.
In the confirmation dialog, select Yes to confirm certificate upload.
Replace existing certificates on all AgentX Clients with your sslagent.cert and sslagent.key files.
Expected outcome
AgentX uploads the rootCA.pem certificate to AgentX Server. You must manually distribute sslagent.cert and sslagent.key to all agents.
Existing agents continue using old certificates until you replace them.
Verification
Go to Settings > Configuration > AgentX > Certificates.
Verify that the upload completed successfully.
After replacing certificates on agents:
Go to Settings > Configuration > AgentX > Agents.
Verify that agents reconnect successfully and appear in the agents list.
Replace certificates on Windows agents
Navigate to the AgentX Client installation directory (default:
C:\Program Files (x86)\ossec-agent\cert).Back up the existing certificate files.
Copy your
sslagent.certandsslagent.keyfiles to thecertdirectory.Restart the AgentX Client service:
Open Services (services.msc)
Right-click the AgentX or OSSEC service
Select Restart
Replace certificates on Linux agents
Navigate to the certificate directory:
Back up the existing certificate files:
Copy your certificate files to the directory.
Set appropriate permissions:
Restart the wazuh-agent service:
Configuration guidelines
Use certificates from trusted Certificate Authorities For production environments, use certificates signed by trusted Certificate Authorities rather than self-signed certificates.
Upload certificates before agent deployment If you have existing organizational certificates, upload them before deploying AgentX Clients to avoid replacing certificates on all agents later.
In distributed mode, certificates sync automatically When operating in distributed mode, AgentX automatically syncs rootCA.pem to all Logpoint nodes in the cluster. You only need to upload certificates once on the Search Head.
Ensure certificate chain is complete If your certificates require intermediate CA certificates, ensure the complete chain is included in rootCA.pem.
Keep client certificates secure Store client certificates securely. Anyone with access to these certificates can authenticate agents to your AgentX Server.
Next steps
Last updated
Was this helpful?