Getting Data In

Why am I getting error "SSL certificate generation failed" while starting the splunkd process on the universal forwarder?

kpavan
Path Finder

Hi All,

I'm unable to start the splunkd process on the universal forwarder and it's giving an error that SSL certificate generation failed. Could you please let me know if there any specific configuration issue?

Thanks!
Pavan

0 Karma

splunkadunk5
Explorer

In my case it ended up being Cylance.

gesman_splunk
Splunk Employee
Splunk Employee

We had reports that antivirus services might cause that.

Check if there are any antivirus or similar resource-hungry services are running and try disabling them and restarting Splunk to test.

Also lack of resources - particularly memory could be generally related cause.

0 Karma

shirishkamat84
Path Finder

Did anyone figured this out and identified a fix. I did not find any answers to this particular problem

0 Karma

jwelch_splunk
Splunk Employee
Splunk Employee

If you are running AV try disabling it and see if that fixes it

0 Karma

jkuma39
New Member

In My case, i tried installing a new splunkforwader and started splunk and got below error. Can you please let me know what can be reason for this?

Splunk> CSI: Logfiles.

Checking prerequisites...
Checking mgmt port [8089]: open
ERROR: pid 13672 terminated with signal 11
SSL certificate generation failed.

Iinux Version: Linux lgdwd511 2.6.32-696.6.3.el6.x86_64 #1 SMP Fri Jun 30 13:24:18 EDT 2017 x86_64 x86_64 x86_64 GNU/Linux

0 Karma

jmallorquin
Builder

Hi,

Did you change the default certificate?
Did you review the splunkd.log file?

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Matching cron expressions

This puzzle (first published here) is based on matching timestamps to cron expressions.All the timestamps ...

Design, Compete, Win: Submit Your Best Splunk Dashboards for a .conf26 Pass

Hello Splunkers,  We’re excited to kick off a Splunk Dashboard contest! We know that dashboards are a primary ...

May 2026 Splunk Expert Sessions: Security & Observability

Level Up Your Operations: May 2026 Splunk Expert Sessions Whether you are refining your security posture or ...