Validate Software Package Download

Validate Software Package Downloads

You can use checksum validation and a digital signature (for specific packages) to validate software downloaded from Splunk AppDynamics Downloads. This validation requires the machine on which you validate a package to include a TLS 1.2 implementation.

Checksum Validation

  1. Navigate to Splunk AppDynamics Downloads.
  2. Click Checksums beneath the software package description to display the MD5 and SHA256 checksums.
  3. After your download completes, run a checksum tool and compare the results against the checksum information on the downloads page.

Digital Signatures

Splunk AppDynamics digitally signs the following packages using a certificate signed by a publicly known certificate authority:

  • .NET Agent
  • Splunk AppDynamics Controller Tenant for Windows MSI installer

Splunk AppDynamics digitally signs the following packages using a PGP key:

  • Java Agent
  • Machine Agent
  • Machine Agent RPM package
  • Python Agent pip package

Splunk AppDynamics hosts the PGP public key on https://pgp.mit.edu/ under the User ID "help@appdynamics.com". See Verify AppDynamics Software Downloads with PGP.