<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Splunk's $SPLUNK_HOME/etc/passwd File syntax and encryption/hashing algorithm in Security</title>
    <link>https://community.splunk.com/t5/Security/Splunk-s-SPLUNK-HOME-etc-passwd-File-syntax-and-encryption/m-p/650056#M17109</link>
    <description>&lt;P&gt;Hi i forgot my password, i need help in resetting it. many thanks&lt;/P&gt;</description>
    <pubDate>Tue, 11 Jul 2023 20:38:34 GMT</pubDate>
    <dc:creator>nikhil1231</dc:creator>
    <dc:date>2023-07-11T20:38:34Z</dc:date>
    <item>
      <title>Splunk's $SPLUNK_HOME/etc/passwd File syntax and encryption/hashing algorithm</title>
      <link>https://community.splunk.com/t5/Security/Splunk-s-SPLUNK-HOME-etc-passwd-File-syntax-and-encryption/m-p/82183#M2736</link>
      <description>&lt;P&gt;I've searched around a good bit.. haven't found any official documentation on the topic.&lt;/P&gt;

&lt;P&gt;On Splunk forwarders and indexers, Splunk stores users and their info in &lt;CODE&gt;$SPLUNK_HOME/etc/passwd&lt;/CODE&gt;&lt;/P&gt;

&lt;P&gt;Cat-ing the file on one of my forwarders looks like this:&lt;/P&gt;

&lt;PRE&gt;&lt;CODE&gt;:admin:&amp;lt;hashed-password&amp;gt;::Administrator:admin:changeme@example.com:
&lt;/CODE&gt;&lt;/PRE&gt;

&lt;P&gt;My two questions are:&lt;/P&gt;

&lt;OL&gt;
&lt;LI&gt;What is the full syntax for the passwd file? Some fields are obvious, but I still haven't found any offical docs on the syntax.&lt;/LI&gt;
&lt;LI&gt;How is the hashed password generated? Is it actually a hash, or a reversible encryption? In either case, what algorithm is used and how is it seeded?&lt;/LI&gt;
&lt;/OL&gt;</description>
      <pubDate>Tue, 02 Jul 2013 17:23:12 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/Splunk-s-SPLUNK-HOME-etc-passwd-File-syntax-and-encryption/m-p/82183#M2736</guid>
      <dc:creator>Ricapar</dc:creator>
      <dc:date>2013-07-02T17:23:12Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk's $SPLUNK_HOME/etc/passwd File syntax and encryption/hashing algorithm</title>
      <link>https://community.splunk.com/t5/Security/Splunk-s-SPLUNK-HOME-etc-passwd-File-syntax-and-encryption/m-p/82184#M2737</link>
      <description>&lt;P&gt;&lt;A href="http://splunk-base.splunk.com/answers/26845/local-splunk-authentication"&gt;http://splunk-base.splunk.com/answers/26845/local-splunk-authentication&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 02 Jul 2013 20:35:15 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/Splunk-s-SPLUNK-HOME-etc-passwd-File-syntax-and-encryption/m-p/82184#M2737</guid>
      <dc:creator>Ayn</dc:creator>
      <dc:date>2013-07-02T20:35:15Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk's $SPLUNK_HOME/etc/passwd File syntax and encryption/hashing algorithm</title>
      <link>https://community.splunk.com/t5/Security/Splunk-s-SPLUNK-HOME-etc-passwd-File-syntax-and-encryption/m-p/650056#M17109</link>
      <description>&lt;P&gt;Hi i forgot my password, i need help in resetting it. many thanks&lt;/P&gt;</description>
      <pubDate>Tue, 11 Jul 2023 20:38:34 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/Splunk-s-SPLUNK-HOME-etc-passwd-File-syntax-and-encryption/m-p/650056#M17109</guid>
      <dc:creator>nikhil1231</dc:creator>
      <dc:date>2023-07-11T20:38:34Z</dc:date>
    </item>
  </channel>
</rss>

