All Apps and Add-ons

Can the Microsoft OMS Moduar Inputs TA be configured to store credentials in the Splunk Credential Store?

port7
Explorer

Setting up the OMS Inputs TA and it looks like the API Key for OMS are stored in plaintext in inputs.conf

Is there anyway for this to be stored more securely such as in the Splunk Credential store??

1 Solution

jkat54
SplunkTrust
SplunkTrust

Key encryption is coming soon but it’s not available in the app’s current version.

UPDATE: Key encrypt is supported in the latest version of the app, and uses the splunk encryption framework provided by the splunk add-on builder.

View solution in original post

jkat54
SplunkTrust
SplunkTrust

Key encryption is coming soon but it’s not available in the app’s current version.

UPDATE: Key encrypt is supported in the latest version of the app, and uses the splunk encryption framework provided by the splunk add-on builder.

MattShep
Engager

Hi @jkat54,

How are the details encrypted in the new update? The release notes just state they are but no further information. We haven't yet upgraded to the newer version as we need to confirm this first.

thanks for the assistance.

jkat54
SplunkTrust
SplunkTrust

Hey @MattShep,

The encryption was achieved using the add on builder and its out of the box field encryption capabilities.

Therefore the keys are encrypted using the splunk.secret as a salt like all the other password fields in splunk core.

0 Karma

port7
Explorer

Thanks @jkat54, any predictions on when this will be available?

jkat54
SplunkTrust
SplunkTrust

It’s available as of today. See version 1.3.3.

0 Karma

p_gurav
Champion

You can tag @jkat54 for support.

Get Updates on the Splunk Community!

Build Scalable Security While Moving to Cloud - Guide From Clayton Homes

 Clayton Homes faced the increased challenge of strengthening their security posture as they went through ...

Mission Control | Explore the latest release of Splunk Mission Control (2.3)

We’re happy to announce the release of Mission Control 2.3 which includes several new and exciting features ...

Cloud Platform | Migrating your Splunk Cloud deployment to Python 3.7

Python 2.7, the last release of Python 2, reached End of Life back on January 1, 2020. As part of our larger ...