All Apps and Add-ons

Splunk Stream 7.1.2 app failed to decrypte payload

davidda
Explorer

Hello,

We've upgraded our Splunk Stream app from 6.4.2 version to the latest 7.1.2 version successfully and now we are trying to upgrade our UF with the latest Splunk_TA_stream version but after the upgrade we stop receiving encrypted data.
We have two applications that run on different ports and use the same key, but only one of port is getting collected to Splunk.
Except updating Splunk Stream app we didn't change nothing and if we rollback to the previous version (6.4.2) it begin to work again.

We are receiving the following errors from the application that stop to be collected with the new Stream app:
1. SSL decryption error (DSSL library error code -41)
2. hs_failed, session: (ssl)

All the configuration are the same over the two apps, Anyone had that issue and can help?

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Vibe-coding, AI, and Splunkcraft: Highlights from the .conf26 Builder Bar

If you stopped by the Builder Bar at .conf26, thank you! This year, we brought ...

Thanks for the Memories: .conf26 Took Learning to New Heights

Thank you, Splunk Community, for making .conf26 in Denver one for the books. From packed Splunk University ...

Best Practices: Splunk auto adjust pipeline queue

When you enable autoAdjustQueue in Splunk, maxSize should be understood as the queue size Splunk starts with ...