When trying to configure the Splunk Add-on for CrowdStrike and add the appropriate user info and API key, I am getting the following error:
REST ERROR[1021]: Fail to decrypt the encrypted credential information - Failed to get credentials
Anyone know how to resolve this?
I was getting exactly the same error message. I had to manually edit the config file:
https://docs.splunk.com/Documentation/AddOns/released/CrowdStrike/Setupv1
Hope that helps.
Did you have your API credentials enabled via CrowdStrike support?