<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Splunk Add-on for NetApp Data ONTAP: After install, why do I receive several SSL errors &amp;quot;[SSL: SSLV3_ALERT_HANDSHAKE_FAILURE] sslv3 alert handshake failure&amp;quot;? in All Apps and Add-ons</title>
    <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Splunk-Add-on-for-NetApp-Data-ONTAP-After-install-why-do-I/m-p/305168#M36403</link>
    <description>&lt;P&gt;I am getting the same error with 6.6.1 and Splunk_TA_ontap 2.15.  I can successfully poll my C-mode filers but I cannot poll any of my 7-mode controllers. (SSLV3_ALERT_HANDSHAKE_FAILURE)&lt;/P&gt;

&lt;P&gt;I logged a case with Splunk Support to see what the say.&lt;/P&gt;</description>
    <pubDate>Tue, 29 Sep 2020 14:32:37 GMT</pubDate>
    <dc:creator>archspangler</dc:creator>
    <dc:date>2020-09-29T14:32:37Z</dc:date>
    <item>
      <title>Splunk Add-on for NetApp Data ONTAP: After install, why do I receive several SSL errors "[SSL: SSLV3_ALERT_HANDSHAKE_FAILURE] sslv3 alert handshake failure"?</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Splunk-Add-on-for-NetApp-Data-ONTAP-After-install-why-do-I/m-p/305166#M36401</link>
      <description>&lt;P&gt;Hi,  I've installed the Splunk Add-on for NetApp Data ONTAP to collect data from each of our devices.  Unfortunately it's not working.  I may be missing something obvious, but I thought I'd ask anyway.  The server is running Splunk 6.6.0, the Splunk Add-on for NetApp Data ONTAP is version 2.15 and the OS is Oracle Linux Server release 6.9.&lt;BR /&gt;
I'm getting the following error in /opt/splunk/var/log/splunk/ta_ontap_conf_service.log.&lt;/P&gt;

&lt;PRE&gt;&lt;CODE&gt;2017-05-20 12:41:36,323 ERROR [TAOntapConfService] [_validate_ontap_server] Could not interact with ontap on host=https://10.180.139.235, error: [OntapClient] Client Side Code Error 13001: [SSL: SSLV3_ALERT_HANDSHAKE_FAILURE] sslv3 alert handshake failure (_ssl.c:676)
None
2017-05-20 12:41:36,335 INFO [TAOntapConfService] [_validate_ontap_server] successfully updated stanza=uigen:-272584:625 credential_validation=False connection_validation=False per_target_credential_validation=['Invalid'] per_target_connection_validation=['Invalid']
&lt;/CODE&gt;&lt;/PRE&gt;

&lt;P&gt;Pulling the SSL cert from a device looks to be in order:&lt;/P&gt;

&lt;PRE&gt;&lt;CODE&gt;$ echo | openssl s_client -showcerts -connect XXX.XXX.XXX.XXX:443 2&amp;gt;/dev/null | openssl x509 -inform pem -noout -text
Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number: 0 (0x0)
    Signature Algorithm: sha256WithRSAEncryption
        Issuer: CN=IBM#42342342, C=US, ST=CA, L=Sunnyvale, O=yourcompany, OU=yourunit/emailAddress=admin@yourcompany.com
        Validity
            Not Before: Jul 16 11:05:36 2015 GMT
            Not After : Jul 12 11:05:36 2030 GMT
        Subject: CN=IBM#42342342, C=US, ST=CA, L=Sunnyvale, O=yourcompany, OU=yourunit/emailAddress=admin@yourcompany.com
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                Public-Key: (512 bit)
                Modulus:
                    some HEX values
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Basic Constraints:
                CA:TRUE
    Signature Algorithm: sha256WithRSAEncryption
         some more HEX values
&lt;/CODE&gt;&lt;/PRE&gt;

&lt;P&gt;Any ideas?&lt;BR /&gt;
T.I.A.&lt;BR /&gt;
Steve&lt;/P&gt;</description>
      <pubDate>Tue, 29 Sep 2020 14:09:35 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Splunk-Add-on-for-NetApp-Data-ONTAP-After-install-why-do-I/m-p/305166#M36401</guid>
      <dc:creator>cdstealer</dc:creator>
      <dc:date>2020-09-29T14:09:35Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk Add-on for NetApp Data ONTAP: After install, why do I receive several SSL errors "[SSL: SSLV3_ALERT_HANDSHAKE_FAILURE] sslv3 alert handshake failure"?</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Splunk-Add-on-for-NetApp-Data-ONTAP-After-install-why-do-I/m-p/305167#M36402</link>
      <description>&lt;P&gt;Hi Steve, I've installed this App and Add-On successfully, I was wondering if you are following this document: &lt;A href="http://docs.splunk.com/Documentation/NetApp/2.1.5/DeployNetapp/WhataSplunkAppforNetAppDataONTAPdeploymentlookslike"&gt;http://docs.splunk.com/Documentation/NetApp/2.1.5/DeployNetapp/WhataSplunkAppforNetAppDataONTAPdeploymentlookslike&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;In my deployment, we had to install in the HF the Add-On, and the App + Add On in the indexer.&lt;/P&gt;

&lt;P&gt;Also, which mode is the NetApp running?&lt;/P&gt;</description>
      <pubDate>Tue, 23 May 2017 15:18:30 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Splunk-Add-on-for-NetApp-Data-ONTAP-After-install-why-do-I/m-p/305167#M36402</guid>
      <dc:creator>jpbonilla</dc:creator>
      <dc:date>2017-05-23T15:18:30Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk Add-on for NetApp Data ONTAP: After install, why do I receive several SSL errors "[SSL: SSLV3_ALERT_HANDSHAKE_FAILURE] sslv3 alert handshake failure"?</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Splunk-Add-on-for-NetApp-Data-ONTAP-After-install-why-do-I/m-p/305168#M36403</link>
      <description>&lt;P&gt;I am getting the same error with 6.6.1 and Splunk_TA_ontap 2.15.  I can successfully poll my C-mode filers but I cannot poll any of my 7-mode controllers. (SSLV3_ALERT_HANDSHAKE_FAILURE)&lt;/P&gt;

&lt;P&gt;I logged a case with Splunk Support to see what the say.&lt;/P&gt;</description>
      <pubDate>Tue, 29 Sep 2020 14:32:37 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Splunk-Add-on-for-NetApp-Data-ONTAP-After-install-why-do-I/m-p/305168#M36403</guid>
      <dc:creator>archspangler</dc:creator>
      <dc:date>2020-09-29T14:32:37Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk Add-on for NetApp Data ONTAP: After install, why do I receive several SSL errors "[SSL: SSLV3_ALERT_HANDSHAKE_FAILURE] sslv3 alert handshake failure"?</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Splunk-Add-on-for-NetApp-Data-ONTAP-After-install-why-do-I/m-p/305169#M36404</link>
      <description>&lt;P&gt;Hi,&lt;BR /&gt;
there has been a new version 2.1.6 released on Friday and they changed some SSL settings. &lt;/P&gt;

&lt;P&gt;I have seen customers created new certificates with weird  parameters (512 or 1024 bit RSA!).&lt;/P&gt;

&lt;P&gt;It looks like the TA is now officially supported by Splunk Enterprise 6.6.x.&lt;/P&gt;

&lt;P&gt;Good luck.&lt;/P&gt;

&lt;P&gt;P.S.&lt;BR /&gt;
One additional hint:&lt;BR /&gt;
Try to connect to you NetApp server using cURL:&lt;/P&gt;

&lt;P&gt;curl -ivvvk &lt;A href="https://my_netapp_server"&gt;https://my_netapp_server&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;It will show you the negotiated algorithms... &lt;BR /&gt;
If there is something like "SSL connection using DES-CBC3-SHA" shown, than you might check the SSL settings on both ends.&lt;BR /&gt;
This is 56 bit and so 1990!&lt;/P&gt;

&lt;P&gt;This URL might give some more details regarding the algorithms and ciphers in use:&lt;BR /&gt;
&lt;A href="https://unix.stackexchange.com/questions/208437/how-to-convert-ssl-ciphers-to-curl-format"&gt;https://unix.stackexchange.com/questions/208437/how-to-convert-ssl-ciphers-to-curl-format&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;Holger&lt;/P&gt;</description>
      <pubDate>Sun, 09 Jul 2017 16:49:19 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Splunk-Add-on-for-NetApp-Data-ONTAP-After-install-why-do-I/m-p/305169#M36404</guid>
      <dc:creator>hsesterhenn_spl</dc:creator>
      <dc:date>2017-07-09T16:49:19Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk Add-on for NetApp Data ONTAP: After install, why do I receive several SSL errors "[SSL: SSLV3_ALERT_HANDSHAKE_FAILURE] sslv3 alert handshake failure"?</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Splunk-Add-on-for-NetApp-Data-ONTAP-After-install-why-do-I/m-p/305170#M36405</link>
      <description>&lt;P&gt;Thanks for the information.  Version 2.1.6 corrected the issues that I was having.  I can now add my 7-mode filers.&lt;/P&gt;

&lt;P&gt;-Archie&lt;/P&gt;</description>
      <pubDate>Mon, 10 Jul 2017 20:15:04 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Splunk-Add-on-for-NetApp-Data-ONTAP-After-install-why-do-I/m-p/305170#M36405</guid>
      <dc:creator>archspangler</dc:creator>
      <dc:date>2017-07-10T20:15:04Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk Add-on for NetApp Data ONTAP: After install, why do I receive several SSL errors "[SSL: SSLV3_ALERT_HANDSHAKE_FAILURE] sslv3 alert handshake failure"?</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Splunk-Add-on-for-NetApp-Data-ONTAP-After-install-why-do-I/m-p/305171#M36406</link>
      <description>&lt;P&gt;Hi, archspangler , is there anything update? I need to deploy Ontap Add-on 2.1.5 on splunk 6.4,  and the device release version is netapp 8.2 with 7-mode, any ideas please? Thx&lt;/P&gt;</description>
      <pubDate>Thu, 14 Mar 2019 03:12:54 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Splunk-Add-on-for-NetApp-Data-ONTAP-After-install-why-do-I/m-p/305171#M36406</guid>
      <dc:creator>aojie654</dc:creator>
      <dc:date>2019-03-14T03:12:54Z</dc:date>
    </item>
  </channel>
</rss>

