<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Splunk Web SSL Certificate Error from 3rd party in Security</title>
    <link>https://community.splunk.com/t5/Security/Splunk-Web-SSL-Certificate-Error-from-3rd-party/m-p/477617#M15256</link>
    <description>&lt;P&gt;Problem resolved , I updated my .key file which was password protected and splunk was unable to read the key file , after removing the password from key file splunk is able to read it and problem resolved.&lt;/P&gt;</description>
    <pubDate>Fri, 06 Sep 2019 22:37:03 GMT</pubDate>
    <dc:creator>Prakash493</dc:creator>
    <dc:date>2019-09-06T22:37:03Z</dc:date>
    <item>
      <title>Splunk Web SSL Certificate Error from 3rd party</title>
      <link>https://community.splunk.com/t5/Security/Splunk-Web-SSL-Certificate-Error-from-3rd-party/m-p/477614#M15253</link>
      <description>&lt;P&gt;Hi , &lt;BR /&gt;
I am in a situation , we have 3 search heads clustered using a 3rd party SSL certs placed in web.conf after  the splunk web ui is not accessed. &lt;/P&gt;

&lt;P&gt;i received 2 certs from a 3rd party company one is , .pem and one is .key certs, i placed those 2 certs under /opt/splunk/etc/auth/xyz folder and then i go to /opt/splunk/etc/system/local folder edited the web.conf and updated it as splunk mentioned &lt;BR /&gt;
[settings]&lt;BR /&gt;
enableSplunkWebSSL = true&lt;BR /&gt;
privKeyPath = /opt/splunk/etc/auth/mycerts/mySplunkWebPrivateKey.key &lt;BR /&gt;
serverCert = /opt/splunk/etc/auth/mycerts/mySplunkWebCertificate.pem &lt;/P&gt;

&lt;P&gt;then i restart the splunk but the UI didnt comes up.&lt;/P&gt;

&lt;P&gt;What mistakes i did ? Please if anyone can help will be great ?&lt;/P&gt;</description>
      <pubDate>Fri, 06 Sep 2019 02:54:26 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/Splunk-Web-SSL-Certificate-Error-from-3rd-party/m-p/477614#M15253</guid>
      <dc:creator>Prakash493</dc:creator>
      <dc:date>2019-09-06T02:54:26Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk Web SSL Certificate Error from 3rd party</title>
      <link>https://community.splunk.com/t5/Security/Splunk-Web-SSL-Certificate-Error-from-3rd-party/m-p/477615#M15254</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;

&lt;P&gt;Any error in &lt;CODE&gt;$SPLUNK_HOME/var/log/splunk/splunkd.log&lt;/CODE&gt; OR &lt;CODE&gt;web_access.log&lt;/CODE&gt; OR &lt;CODE&gt;web_service.log&lt;/CODE&gt; ? As you are using search head in clustered, how are you accessing Search Head Web (Through any Load Balancer ? If yes then have you tried to access Search Head Web directly like &lt;A href="https://SEARCH_HEAD_SERVER:8000"&gt;https://SEARCH_HEAD_SERVER:8000&lt;/A&gt; ?) &lt;/P&gt;</description>
      <pubDate>Fri, 06 Sep 2019 08:43:36 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/Splunk-Web-SSL-Certificate-Error-from-3rd-party/m-p/477615#M15254</guid>
      <dc:creator>harsmarvania57</dc:creator>
      <dc:date>2019-09-06T08:43:36Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk Web SSL Certificate Error from 3rd party</title>
      <link>https://community.splunk.com/t5/Security/Splunk-Web-SSL-Certificate-Error-from-3rd-party/m-p/477616#M15255</link>
      <description>&lt;P&gt;Thanks harsa ,&lt;/P&gt;

&lt;P&gt;Problem resolved , I updated my .key file which was password protected and splunk was unable to read the key file , after removing the password from key file splunk is able to read it and problem resolved.&lt;/P&gt;</description>
      <pubDate>Fri, 06 Sep 2019 22:36:40 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/Splunk-Web-SSL-Certificate-Error-from-3rd-party/m-p/477616#M15255</guid>
      <dc:creator>Prakash493</dc:creator>
      <dc:date>2019-09-06T22:36:40Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk Web SSL Certificate Error from 3rd party</title>
      <link>https://community.splunk.com/t5/Security/Splunk-Web-SSL-Certificate-Error-from-3rd-party/m-p/477617#M15256</link>
      <description>&lt;P&gt;Problem resolved , I updated my .key file which was password protected and splunk was unable to read the key file , after removing the password from key file splunk is able to read it and problem resolved.&lt;/P&gt;</description>
      <pubDate>Fri, 06 Sep 2019 22:37:03 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/Splunk-Web-SSL-Certificate-Error-from-3rd-party/m-p/477617#M15256</guid>
      <dc:creator>Prakash493</dc:creator>
      <dc:date>2019-09-06T22:37:03Z</dc:date>
    </item>
  </channel>
</rss>

