Security

Having trouble with using certificates

Charlython
Observer

Hi there! 

I've been using Splunk for a while and now i want  to use certificates to making it more secure.

The problem comes when, afteer following the documentation, splunk web doesn't  starts.

My pem certificate has 2 certificates inside and a private key, and I also tried using the private key in a .key file and the certificates together in the pem and it neither works.

Any advice or solution?

Thank you!

Labels (2)
0 Karma

matt8679
Path Finder

Make sure your Splunk user has the proper permissions to read the certs.

web.conf

enableSplunkWebSSL = 1

privKeyPath = /opt/splunk/etc/auth/mycert.key

serverCert = /opt/splunk/etc/auth/mycert.pem

 

Depending on the method you used, you must combine the server certificate, the private key, and the public certificate, in that order, into a single file. The combined file must be in privacy-enhanced mail (PEM) format.

cat <server certificate file> <server private key file> <certificate authority certificate file> > <combined server certificate file>

https://docs.splunk.com/Documentation/Splunk/9.0.0/Security/HowtoprepareyoursignedcertificatesforSpl... 

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Observability Simplified: Combining User Experience, Application Performance & ...

Tech Talk Observability Simplified: Combining User Experience, Application Performance & Network ...

Event Series May & June: From Network Visibility to Service Intelligence

Unifying the Network: Moving from Alert Noise to Service Intelligence with Splunk ITSI In today’s hybrid ...