Developing for Splunk Enterprise

Splunk JS SDK password API response returns plain password

mbachhav
Explorer

I have used Splunk setup view as a replacement of setup.xml.

For this, I have used Splunk JS SDK. I have a password field on the setup page. JS SDK saves the encrypted password in the 'local/FILENAME.conf' file.

This JS SDK internally calls Splunk API. The password API(https://{HOST_NAME}/en-US/splunkd/__raw/servicesNS/nobody/{TA_NAME}/storage/passwords?count=0&output_mode=json) response returns both plain password & encrypted password.

How to avoid plain password in Splunk's password API response?

Thanks in advance.

Labels (3)
0 Karma
.conf21 CFS Extended through 5/20!

Don't miss your chance
to share your Splunk
wisdom in-person or
virtually at .conf21!

Call for Speakers has
been extended through
Thursday, 5/20!