<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Setting requireClientCert = true prevents &amp;quot;Splunk Add-on for Java Management Extensions&amp;quot; from communicating with splunkd in All Apps and Add-ons</title>
    <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Setting-requireClientCert-true-prevents-quot-Splunk-Add-on-for/m-p/178004#M17361</link>
    <description>&lt;P&gt;No for the following causes:&lt;BR /&gt;
1- because there is no mention of it on the Installation steps ( &lt;A href="http://docs.splunk.com/Documentation/AddOns/latest/JMX/Installationsteps"&gt;http://docs.splunk.com/Documentation/AddOns/latest/JMX/Installationsteps&lt;/A&gt;)&lt;BR /&gt;
2- The only point of conflict is the variable in question: requireClientCert = true (if it is set to off, the app starts working).&lt;/P&gt;

&lt;P&gt;For me it is pretty clear that some improvement is due on this App.&lt;/P&gt;</description>
    <pubDate>Mon, 03 Aug 2015 14:27:02 GMT</pubDate>
    <dc:creator>DimasSouza</dc:creator>
    <dc:date>2015-08-03T14:27:02Z</dc:date>
    <item>
      <title>Setting requireClientCert = true prevents "Splunk Add-on for Java Management Extensions" from communicating with splunkd</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Setting-requireClientCert-true-prevents-quot-Splunk-Add-on-for/m-p/177998#M17355</link>
      <description>&lt;P&gt;Hello Community,&lt;/P&gt;

&lt;P&gt;since I enabled the setting "requireClientCert = true" on our server.conf files the App "Splunk_TA_jmx" just stopped working. I pasted the error messages at the end.&lt;BR /&gt;
Once the setting is returned to "false" the app starts working again.&lt;BR /&gt;
We are using selfsigned Certificates on our Splunk to Splunk communications, apart from this App, all other connections are working perfectly with requireClientCert = true .&lt;/P&gt;

&lt;P&gt;I even tried generating the file mx4j.ks. No success. &lt;span class="lia-unicode-emoji" title=":disappointed_face:"&gt;😞&lt;/span&gt;&lt;/P&gt;

&lt;P&gt;I seems the App internal connection to splunk are being blocked, but I can't find a way to provide it with out certificates.&lt;/P&gt;

&lt;P&gt;Any recommendation? Is it a bug?&lt;/P&gt;

&lt;P&gt;We are running on SLES 11, Splunk 6.2.2 build 255606. Splunk Add-on for Java Management Extensions 3.0.0 (sandbox version is 3.0.1) and Oracle Java 1.8.&lt;/P&gt;

&lt;P&gt;Thanks in advance,&lt;BR /&gt;
Dms&lt;/P&gt;

&lt;PRE&gt;&lt;CODE&gt;on splunkd.log
06-26-2015 15:09:37.491 +0200 WARN  HttpListener - Socket error from 127.0.0.1 while idling: error:140890C7:SSL routines:SSL3_GET_CLIENT_CERTIFICATE:peer did not return a certificate

on jmx.log
2015-06-26 14:26:09,630 - com.splunk.modinput.ModularInput -0    [main] ERROR  - Error executing modular input : Received fatal alert: handshake_failure : java.lang.RuntimeException: Received fatal alert: handshake_failure
&lt;/CODE&gt;&lt;/PRE&gt;</description>
      <pubDate>Mon, 28 Sep 2020 20:23:03 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Setting-requireClientCert-true-prevents-quot-Splunk-Add-on-for/m-p/177998#M17355</guid>
      <dc:creator>DimasSouza</dc:creator>
      <dc:date>2020-09-28T20:23:03Z</dc:date>
    </item>
    <item>
      <title>Re: Setting requireClientCert = true prevents "Splunk Add-on for Java Management Extensions" from communicating with splunkd</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Setting-requireClientCert-true-prevents-quot-Splunk-Add-on-for/m-p/177999#M17356</link>
      <description>&lt;P&gt;Java 8 means TLS is required, SSL won't work. I'd also upgrade to the latest Splunkd.&lt;/P&gt;</description>
      <pubDate>Mon, 29 Jun 2015 02:24:30 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Setting-requireClientCert-true-prevents-quot-Splunk-Add-on-for/m-p/177999#M17356</guid>
      <dc:creator>jcoates_splunk</dc:creator>
      <dc:date>2015-06-29T02:24:30Z</dc:date>
    </item>
    <item>
      <title>Re: Setting requireClientCert = true prevents "Splunk Add-on for Java Management Extensions" from communicating with splunkd</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Setting-requireClientCert-true-prevents-quot-Splunk-Add-on-for/m-p/178000#M17357</link>
      <description>&lt;P&gt;That is not the issue here. A simple test with Java 1.8 and openssl s_server using the same certificates from my Splunk system returns successfull connections. This error can be reproduced by not sending a client certificate. &lt;BR /&gt;
Btw. an updated version of splunk (sandbox running 6.2.3) returns the same problem.&lt;/P&gt;</description>
      <pubDate>Mon, 29 Jun 2015 11:13:16 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Setting-requireClientCert-true-prevents-quot-Splunk-Add-on-for/m-p/178000#M17357</guid>
      <dc:creator>DimasSouza</dc:creator>
      <dc:date>2015-06-29T11:13:16Z</dc:date>
    </item>
    <item>
      <title>Re: Setting requireClientCert = true prevents "Splunk Add-on for Java Management Extensions" from communicating with splunkd</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Setting-requireClientCert-true-prevents-quot-Splunk-Add-on-for/m-p/178001#M17358</link>
      <description>&lt;P&gt;allow me to clarify -- this is the tested and supported connectivity matrix: &lt;A href="http://docs.splunk.com/Documentation/AddOns/latest/JMX/Hardwareandsoftwarerequirements#Prerequisites"&gt;http://docs.splunk.com/Documentation/AddOns/latest/JMX/Hardwareandsoftwarerequirements#Prerequisites&lt;/A&gt; &lt;/P&gt;

&lt;P&gt;If you're trying to go outside of that, we don't think that it will work, but will happily accept being wrong if it comes with a support ticket and enhancement request, preferably with an example of how it was made to work &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 29 Jun 2015 15:39:26 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Setting-requireClientCert-true-prevents-quot-Splunk-Add-on-for/m-p/178001#M17358</guid>
      <dc:creator>jcoates_splunk</dc:creator>
      <dc:date>2015-06-29T15:39:26Z</dc:date>
    </item>
    <item>
      <title>Re: Setting requireClientCert = true prevents "Splunk Add-on for Java Management Extensions" from communicating with splunkd</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Setting-requireClientCert-true-prevents-quot-Splunk-Add-on-for/m-p/178002#M17359</link>
      <description>&lt;P&gt;We did not try to go outside of that. A Support ticket has just been opened (Case Nr. 251396).&lt;/P&gt;

&lt;P&gt;If you wish to see it, just edit the [sslConfig] stanza of your server.conf as follows (alter paths and filenames as necessary) (either on a splunk server of a universal forwarder)&lt;BR /&gt;
Once its done, restart splunk and check your splunkd.log and jmx.log files.&lt;/P&gt;

&lt;PRE&gt;&lt;CODE&gt;[sslConfig] 
allowSslCompression = false 
allowSslRenegotiation = false 
caCertFile = &amp;lt;self_signed_root_ca&amp;gt; 
caPath = &amp;lt;caPath&amp;gt; 
cipherSuite = TLSv1+HIGH:!SSLv2:!RC2:!RC4:!DES:!3DES:!MD5:!MD2:!EXP:!MEDIUM:!LOW:!PSK:!DSS:!aNULL:!eNULL:!SRP:!aECDH:!aECDSA@STRENGTH 
ecdhCurveName = prime256v1 
requireClientCert = true 
sslKeysfile = &amp;lt;sslKeysfile&amp;gt; 
sslKeysfilePassword = &amp;lt;sslKeysfilePassword&amp;gt; 
sslVersions = tls1.2 
&lt;/CODE&gt;&lt;/PRE&gt;</description>
      <pubDate>Wed, 01 Jul 2015 13:25:57 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Setting-requireClientCert-true-prevents-quot-Splunk-Add-on-for/m-p/178002#M17359</guid>
      <dc:creator>DimasSouza</dc:creator>
      <dc:date>2015-07-01T13:25:57Z</dc:date>
    </item>
    <item>
      <title>Re: Setting requireClientCert = true prevents "Splunk Add-on for Java Management Extensions" from communicating with splunkd</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Setting-requireClientCert-true-prevents-quot-Splunk-Add-on-for/m-p/178003#M17360</link>
      <description>&lt;BLOCKQUOTE&gt;
&lt;P&gt;A simple test with Java 1.8 and openssl s_server using the same certificates from my Splunk system returns successfull connections.&lt;/P&gt;
&lt;/BLOCKQUOTE&gt;

&lt;P&gt;Just for clarification; this means you have your certs imported in the Java keystore that is used by the app as well, correct?&lt;/P&gt;</description>
      <pubDate>Wed, 01 Jul 2015 14:02:32 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Setting-requireClientCert-true-prevents-quot-Splunk-Add-on-for/m-p/178003#M17360</guid>
      <dc:creator>laserval</dc:creator>
      <dc:date>2015-07-01T14:02:32Z</dc:date>
    </item>
    <item>
      <title>Re: Setting requireClientCert = true prevents "Splunk Add-on for Java Management Extensions" from communicating with splunkd</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Setting-requireClientCert-true-prevents-quot-Splunk-Add-on-for/m-p/178004#M17361</link>
      <description>&lt;P&gt;No for the following causes:&lt;BR /&gt;
1- because there is no mention of it on the Installation steps ( &lt;A href="http://docs.splunk.com/Documentation/AddOns/latest/JMX/Installationsteps"&gt;http://docs.splunk.com/Documentation/AddOns/latest/JMX/Installationsteps&lt;/A&gt;)&lt;BR /&gt;
2- The only point of conflict is the variable in question: requireClientCert = true (if it is set to off, the app starts working).&lt;/P&gt;

&lt;P&gt;For me it is pretty clear that some improvement is due on this App.&lt;/P&gt;</description>
      <pubDate>Mon, 03 Aug 2015 14:27:02 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Setting-requireClientCert-true-prevents-quot-Splunk-Add-on-for/m-p/178004#M17361</guid>
      <dc:creator>DimasSouza</dc:creator>
      <dc:date>2015-08-03T14:27:02Z</dc:date>
    </item>
    <item>
      <title>Re: Setting requireClientCert = true prevents "Splunk Add-on for Java Management Extensions" from communicating with splunkd</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Setting-requireClientCert-true-prevents-quot-Splunk-Add-on-for/m-p/178005#M17362</link>
      <description>&lt;P&gt;it is a problem for python sdk too.&lt;BR /&gt;
&lt;A href="https://github.com/splunk/splunk-sdk-python/issues/123"&gt;https://github.com/splunk/splunk-sdk-python/issues/123&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;Any solution for this problem without setting requireClientCert = false &lt;/P&gt;</description>
      <pubDate>Wed, 04 Nov 2015 08:50:33 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Setting-requireClientCert-true-prevents-quot-Splunk-Add-on-for/m-p/178005#M17362</guid>
      <dc:creator>i2sheri</dc:creator>
      <dc:date>2015-11-04T08:50:33Z</dc:date>
    </item>
    <item>
      <title>Re: Setting requireClientCert = true prevents "Splunk Add-on for Java Management Extensions" from communicating with splunkd</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Setting-requireClientCert-true-prevents-quot-Splunk-Add-on-for/m-p/178006#M17363</link>
      <description>&lt;P&gt;Any solution or workaround for this problem without setting requireClientCert = false &lt;/P&gt;</description>
      <pubDate>Wed, 04 Nov 2015 08:50:56 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Setting-requireClientCert-true-prevents-quot-Splunk-Add-on-for/m-p/178006#M17363</guid>
      <dc:creator>i2sheri</dc:creator>
      <dc:date>2015-11-04T08:50:56Z</dc:date>
    </item>
    <item>
      <title>Re: Setting requireClientCert = true prevents "Splunk Add-on for Java Management Extensions" from communicating with splunkd</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Setting-requireClientCert-true-prevents-quot-Splunk-Add-on-for/m-p/178007#M17364</link>
      <description>&lt;P&gt;Hello Everybody,&lt;/P&gt;

&lt;P&gt;here the official answer I got from Splunk support:&lt;BR /&gt;
"Unfortunately the feedback from Dev is that JMX App does not support requireClientCert=true in server.conf.&lt;BR /&gt;
They are planning to add the fix the one of the next releases of this App, so I would like to know if using requireClientCert=false it is a possibility based on your requirements"&lt;/P&gt;

&lt;P&gt;So we have to work with requireClientCert=false for the time being.&lt;/P&gt;

&lt;P&gt;Regards,&lt;BR /&gt;
Dimas Souza&lt;/P&gt;</description>
      <pubDate>Wed, 04 Nov 2015 11:36:34 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Setting-requireClientCert-true-prevents-quot-Splunk-Add-on-for/m-p/178007#M17364</guid>
      <dc:creator>DimasSouza</dc:creator>
      <dc:date>2015-11-04T11:36:34Z</dc:date>
    </item>
    <item>
      <title>Re: Setting requireClientCert = true prevents "Splunk Add-on for Java Management Extensions" from communicating with splunkd</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Setting-requireClientCert-true-prevents-quot-Splunk-Add-on-for/m-p/178008#M17365</link>
      <description>&lt;P&gt;Follow up:&lt;/P&gt;

&lt;P&gt;This issue was included on the "Known Issues" list for this app with issue Numer: ADDON-5325&lt;/P&gt;

&lt;P&gt;We're still waiting for a solution.&lt;/P&gt;</description>
      <pubDate>Thu, 04 Aug 2016 08:10:26 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Setting-requireClientCert-true-prevents-quot-Splunk-Add-on-for/m-p/178008#M17365</guid>
      <dc:creator>DimasSouza</dc:creator>
      <dc:date>2016-08-04T08:10:26Z</dc:date>
    </item>
    <item>
      <title>Re: Setting requireClientCert = true prevents "Splunk Add-on for Java Management Extensions" from communicating with splunkd</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Setting-requireClientCert-true-prevents-quot-Splunk-Add-on-for/m-p/178009#M17366</link>
      <description>&lt;P&gt;Is this problem resolved? What is the fix for this?&lt;/P&gt;</description>
      <pubDate>Tue, 04 Oct 2016 13:03:09 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Setting-requireClientCert-true-prevents-quot-Splunk-Add-on-for/m-p/178009#M17366</guid>
      <dc:creator>mshenoyp</dc:creator>
      <dc:date>2016-10-04T13:03:09Z</dc:date>
    </item>
  </channel>
</rss>

