<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Splunk not taking updated certificate (SSL) in Security</title>
    <link>https://community.splunk.com/t5/Security/Splunk-not-taking-updated-certificate-SSL/m-p/413894#M9873</link>
    <description>&lt;P&gt;Hi @nawazns5038 ,&lt;/P&gt;

&lt;P&gt;Have you gone through the below settings in web.conf ?&lt;/P&gt;

&lt;P&gt;&lt;A href="https://docs.splunk.com/Documentation/Splunk/7.2.3/Security/SecureSplunkWebusingasignedcertificate#Configure_Splunk_Web_to_use_the_key_and_certificate_files"&gt;https://docs.splunk.com/Documentation/Splunk/7.2.3/Security/SecureSplunkWebusingasignedcertificate#Configure_Splunk_Web_to_use_the_key_and_certificate_files&lt;/A&gt;&lt;/P&gt;</description>
    <pubDate>Sat, 19 Jan 2019 03:49:23 GMT</pubDate>
    <dc:creator>MoniM</dc:creator>
    <dc:date>2019-01-19T03:49:23Z</dc:date>
    <item>
      <title>Splunk not taking updated certificate (SSL)</title>
      <link>https://community.splunk.com/t5/Security/Splunk-not-taking-updated-certificate-SSL/m-p/413893#M9872</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;

&lt;P&gt;The search head cluster uses our own certificates which are going to expire soon. So in order to update the certificates I have pushed the certs through the deployer and updated the SSL Password in server.conf and outputs.conf and the search heads restarted and everything is working fine without errors . But the certificates have not been updated. UI still shows the old certificate and I have checked the expiry through CLI as well. It shows the old certificate. The new certificates have been pushed in the backend. &lt;/P&gt;

&lt;P&gt;What could be the reason ??  Anything that I have missed ?&lt;/P&gt;

&lt;P&gt;I have double checked using &lt;CODE&gt;btool&lt;/CODE&gt; ,  and the certs are pointing towards the right direction . &lt;/P&gt;

&lt;P&gt;One thing I observed is that &lt;CODE&gt;$SPLUNK_HOME&lt;/CODE&gt; is not set on the &lt;CODE&gt;splunk-launch.conf&lt;/CODE&gt; file . Is that a problem ?? &lt;/P&gt;</description>
      <pubDate>Sat, 19 Jan 2019 01:32:43 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/Splunk-not-taking-updated-certificate-SSL/m-p/413893#M9872</guid>
      <dc:creator>nawazns5038</dc:creator>
      <dc:date>2019-01-19T01:32:43Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk not taking updated certificate (SSL)</title>
      <link>https://community.splunk.com/t5/Security/Splunk-not-taking-updated-certificate-SSL/m-p/413894#M9873</link>
      <description>&lt;P&gt;Hi @nawazns5038 ,&lt;/P&gt;

&lt;P&gt;Have you gone through the below settings in web.conf ?&lt;/P&gt;

&lt;P&gt;&lt;A href="https://docs.splunk.com/Documentation/Splunk/7.2.3/Security/SecureSplunkWebusingasignedcertificate#Configure_Splunk_Web_to_use_the_key_and_certificate_files"&gt;https://docs.splunk.com/Documentation/Splunk/7.2.3/Security/SecureSplunkWebusingasignedcertificate#Configure_Splunk_Web_to_use_the_key_and_certificate_files&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Sat, 19 Jan 2019 03:49:23 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/Splunk-not-taking-updated-certificate-SSL/m-p/413894#M9873</guid>
      <dc:creator>MoniM</dc:creator>
      <dc:date>2019-01-19T03:49:23Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk not taking updated certificate (SSL)</title>
      <link>https://community.splunk.com/t5/Security/Splunk-not-taking-updated-certificate-SSL/m-p/590551#M16012</link>
      <description>&lt;P&gt;Hello!&amp;nbsp; Did you get this working? I am having the same issue - the&amp;nbsp;privKeyPath and&amp;nbsp;serverCert show up correctly when I run btool, but it still seems to be using the old self signed certs.....&lt;/P&gt;</description>
      <pubDate>Thu, 24 Mar 2022 01:52:27 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/Splunk-not-taking-updated-certificate-SSL/m-p/590551#M16012</guid>
      <dc:creator>johnansett</dc:creator>
      <dc:date>2022-03-24T01:52:27Z</dc:date>
    </item>
  </channel>
</rss>

