All Apps and Add-ons

Passwords manager for tokens

splunkreal
Motivator

Hello, like username/password is it possible to hide tokens? This could help secure @jkat54 Webtools add-on. Thanks for your help!

* If this helps, please upvote or accept solution if it solved *
Labels (2)
0 Karma

livehybrid
SplunkTrust
SplunkTrust

Hi @splunkreal 

You can write the token into passwords.conf using something like this:

curl -k -u admin https://localhost:8089/servicesNS/nobody/search/storage/passwords -d name="token:mySecureTokenName" -d password=CheckMeOut

Then retrieve it with SPL and add it in the appropriate part of your search to be used in the curl command:

|rest /servicesNS/nobody/search/storage/passwords search="username=token:mySecureTokenName" | fields clear_password
| eval url="https://webhook.site/a7a88b1b-3676-47be-bf64-850ddea61898?token=".clear_password
| curl method=get urifield=url

livehybrid_0-1762424264683.png

🌟 Did this answer help you? If so, please consider:

  • Adding karma to show it was useful
  • Marking it as the solution if it resolved your issue
  • Commenting if you need any clarification

Your feedback encourages the volunteers in this community to continue contributing

 

Get Updates on the Splunk Community!

Accelerating Observability as Code with the Splunk AI Assistant

We’ve seen in previous posts what Observability as Code (OaC) is and how it’s now essential for managing ...

Integrating Splunk Search API and Quarto to Create Reproducible Investigation ...

 Splunk is More Than Just the Web Console For Digital Forensics and Incident Response (DFIR) practitioners, ...

Congratulations to the 2025-2026 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...