All Apps and Add-ons

Add-on Builder API inputs

dsofoulis
Path Finder

Hi Everyone,

I am using the Splunk Add-on builder and trying to create an API input.
The url is a website using TLS. The string which I'm works when put into a browser, but when clicking test I get the following error:

HTTPError: HTTP Error [SSL: TLSV1_ALERT_INTERNAL_ERROR] tlsv1 alert internal error (_ssl.c:676)

Not sure how to fix this.

0 Karma

chli_splunk
Splunk Employee
Splunk Employee

This is a bug of AoB built-in package httplib2. Please upgrade it to latest version(https://pypi.python.org/pypi/httplib2/0.10.3) in following path:

/etc/apps/splunk_app_addon-builder/bin/splunk_app_add_on_builder/httplib2

/etc/apps/splunk_app_addon-builder/bin/ta_generator/resources_lib/httplib2

/etc/apps/{your TA}/bin/ta_tt/httplib2

waechtler
Path Finder

this solution did help me for AoB v 2.2 with a similar error:
HTTPError reason=HTTP Error [SSL: SSLV3_ALERT_HANDSHAKE_FAILURE] sslv3 alert handshake failure (_ssl.c:676)

0 Karma

asieira
Path Finder

I found a reference to a similar problem here and the root cause was a bug in OpenSSL: https://github.com/neo4j/neo4j/issues/9233

What version of Splunk are you running? Is the operating system fully patched, in particular the SSL libraries?

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Vibe-coding, AI, and Splunkcraft: Highlights from the .conf26 Builder Bar

If you stopped by the Builder Bar at .conf26, thank you! This year, we brought ...

Thanks for the Memories: .conf26 Took Learning to New Heights

Thank you, Splunk Community, for making .conf26 in Denver one for the books. From packed Splunk University ...

Best Practices: Splunk auto adjust pipeline queue

When you enable autoAdjustQueue in Splunk, maxSize should be understood as the queue size Splunk starts with ...