Installation

How to install an SSL key from a trusted certificate authority?

timmy13
Communicator

The docs clearly show how to install a self-generated ssl key, but we have a cert from a TCA. I can't seem to find docs on how to install this.

Thanks in advance

1 Solution

jworthington_sp
Splunk Employee
Splunk Employee

Dwaddle's talk is amazing, I recommend it highly.

We also have a topic here that talks about using signed certificates in your indexer to forwarder configuration:

http://docs.splunk.com/Documentation/Splunk/6.4.3/Security/ConfigureSplunkforwardingtousesignedcerti...

Hope that helps!
jen

dwaddle
SplunkTrust
SplunkTrust

esalesap
Path Finder

Links to the talk return:

<Error>
<Code>AccessDenied</Code>
<Message>Access Denied</Message>
<RequestId>7BEZWWY1K8WA511V</RequestId>
<HostId>bsDp/rRmE1/64CmaduU6ebmvWdDJNvkw/bnJUnDSNYE26AE+HFQUYMcng/bVXyfeD/dL5kmgkZ8=</HostId>
</Error>
 
How about a paragraph describing what to do?
0 Karma

timmy13
Communicator

Hi and thanks for the replies. DWaddle, I've followed your directions from the slide deck, and all went well, but when trying to start splunk, it sets at "Waiting for web server at https://127.0.0.1:8000 to be available.." and never goes anywhere. Don't see anything in the logs but not sure I'm looking in the right place.

0 Karma

dwaddle
SplunkTrust
SplunkTrust

There's a number of places where a misconfiguration could cause that kind of hang. Usually I would start with encrypted passwords in etc/system/local/*.conf that are wrong. The logs can be fairly hard to pull this kind of thing out of just because of the verbosity of everything during startup.

This will get painful if we try to comment back and forth here to debug - any chance you are on the Splunk IRC channel and/or slack chat? We might be able to work through this more interactively there.

0 Karma

gregbo
Communicator

When updating the web.conf file, what port did you specify for SSL?

0 Karma

timmy13
Communicator

Tried 8443 and 8000

0 Karma
Get Updates on the Splunk Community!

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI!Discover how Splunk’s agentic AI ...

Splunk Enterprise Security 8.x: The Essential Upgrade for Threat Detection, ...

Watch On Demand the Tech Talk on November 6 at 11AM PT, and empower your SOC to reach new heights! Duration: ...

Splunk Observability as Code: From Zero to Dashboard

For the details on what Self-Service Observability and Observability as Code is, we have some awesome content ...