Installation

Creating and installing TLS Certificates on Windows 2022 Server

tringener
Explorer

I am new to Splunk and I have been tasked to setup management and data traffic to use SSL certificates. A colleague installed Splunk 9.2.1 on Windows 2022 server on a separate application drive. A document I found on the Splunk documents site "How to obtain certificates from a third-party for inter-Splunk communication". The commands use environment variables that are not setup on my server.

Questions:

1. Where these variables supposed to be added during the install?

2. If not which variables do I need to add and where do I add them (user or system) variables?

3. Is there a major difference in configuration if Splunk is installed to an application drive not the O/S drive?

4. In generating the privatekey.key file is it supposed to be saved in the same folder as the servercertificate.csr?

 

Labels (1)
0 Karma

Tom_Lundie
Contributor

The %SPLUNK_HOME% variable that you noted in this documentation is not defined outside of the Splunk process by default.

%SPLUNK_HOME% refers to the Splunk installation folder on Windows. Typically:

 

C:\Program Files\Splunk

 

 
You can run all of those commands as the user running Splunk by either setting the environment variable or replacing it manually first. To permanently set the environment variable you can use:

 

setx SPLUNK_HOME "C:\Program Files\Splunk"

 

Read more here.

0 Karma
Career Survey
First 500 qualified respondents will receive a $20 gift card! Tell us about your professional Splunk journey.
Get Updates on the Splunk Community!

.conf25 Global Broadcast: Don’t Miss a Moment

Hello Splunkers, .conf25 is only a click away.  Not able to make it to .conf25 in person? No worries, you can ...

Observe and Secure All Apps with Splunk

 Join Us for Our Next Tech Talk: Observe and Secure All Apps with SplunkAs organizations continue to innovate ...

What's New in Splunk Observability - August 2025

What's New We are excited to announce the latest enhancements to Splunk Observability Cloud as well as what is ...