Getting Data In

Error in internal logs for ssl for inputs.conf

joe06031990
Communicator

Hi,

I can see the below error in the internal logs for a host  that is not bringing any logs in 

Splunk error SSLOptions [17960 TcListener] - inputs. conf/[SSL]: could not read properties;

we don’t have ssl options in inputs.conf just wondered if there was any other locations to check on the universal forwarder as it works fine for other servers.

Labels (2)
0 Karma
1 Solution

SanjayReddy
SplunkTrust
SplunkTrust

Hi @joe06031990 

you can find out locations where SSL config present following command helpfull to get locations other tha default
from command promt

navigate to splunk--->bin

run following command

splunk btool inputs list ssl --debug | grep -i local

use findstr instead of grep in case of windows 

View solution in original post

SanjayReddy
SplunkTrust
SplunkTrust

Hi @joe06031990 

you can find out locations where SSL config present following command helpfull to get locations other tha default
from command promt

navigate to splunk--->bin

run following command

splunk btool inputs list ssl --debug | grep -i local

use findstr instead of grep in case of windows 

joe06031990
Communicator

Thanks I will give it a try 

0 Karma
Get Updates on the Splunk Community!

Splunk Enterprise Security: Your Command Center for PCI DSS Compliance

Every security professional knows the drill. The PCI DSS audit is approaching, and suddenly everyone's asking ...

Developer Spotlight with Guilhem Marchand

From Splunk Engineer to Founder: The Journey Behind TrackMe    After spending over 12 years working full time ...

Cisco Catalyst Center Meets Splunk ITSI: From 'Payments Are Down' to Root Cause in ...

The Problem: When Networks and Services Don't Talk Payment systems fail at a retail location. Customers are ...