All Apps and Add-ons

How do I resolve this error: MISP APP API SSL: CERTIFICATE_VERIFY_FAILED

gordonblei
New Member

Hello,

 

i have setup the  MISP42 | Splunkbase app and i want splunk to use the ssl connection to MISP.

My certificate is issued by lets encrypt for MISP and SPLUNK. 

i have copied the fullchain.pem and crt from MISP to SPLUNK

But is still get the following error after enabling "check MISP certificate" 

External search command 'mispgetevent' returned error code 1. Script output = "error_message=SSLError at "/opt/splunk/lib/python3.7/site-packages/requests/adapters.py", line 514 : HTTPSConnectionPool(host='FQDN', port=443): Max retries exceeded with url: /events/restSearch (Caused by SSLError(SSLCertVerificationError(1, '[SSL: CERTIFICATE_VERIFY_FAILED] certificate verify failed: unable to get issuer certificate (_ssl.c:1106)'))) ". 

Thanks in advance for your help

Labels (2)
Tags (1)
0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Persistent Queue at TcpOut — One of Splunk's Most Practical Features

Splunk introduced persistent queueing at the tcpout layer as one of the most practical resilience features in ...

Skip the Awkward Silence: Have a .conf-ersation at .conf26

Picture this. You arrive at .conf26 already having your socializing and networking plans mapped out. No ...

Rethinking Zero Trust: From Product Purchases to Logical Control Evidence

Note: This post outlines a proposed architecture and serves as an interest check. If we secure commitments ...