Security

Splunk SSL certificate decryption error

Haleb
Path Finder

Hello there!
After following this docs https://docs.splunk.com/Documentation/Splunk/9.2.1/Security/Howtoself-signcertificateshttps://docs.splunk.com/Documentation/Splunk/9.2.1/Security/HowtoprepareyoursignedcertificatesforSpl...https://docs.splunk.com/Documentation/Splunk/9.2.1/Security/SecureSplunkWebusingasignedcertificate for SSL certificate installation I receive an error message when I tried to restart Splunk:
Cannot decrypt private key in "/opt/splunk/etc/auth/mycerts/myServerPrivateKey.key" without a password

web.conf
[settings]
enableSplunkWebSSL = true
privKeyPath = /opt/splunk/etc/auth/mycerts/myServerPrivateKey.key
serverCert = /opt/splunk/etc/auth/mycerts/splunkCert.pem

Any solutions for this issue will be appreciated!

Labels (2)
0 Karma
1 Solution

deepakc
Builder

Sounds like when when you generated the key for your Splunk web server (privKeyPath = /opt/splunk/etc/auth/mycerts/myServerPrivateKey.key) you set the password/passphrase)


So now you need to use this in the web.conf (Password that protects the private key specified by 'privKeyPath'.)

sslPassword = (your privKeyPath Key password/passphrase)

Set your Password with the above settings, under [settings] and restart - see if that works. 

View solution in original post

Haleb
Path Finder

It works, thanks!

0 Karma

deepakc
Builder

Sounds like when when you generated the key for your Splunk web server (privKeyPath = /opt/splunk/etc/auth/mycerts/myServerPrivateKey.key) you set the password/passphrase)


So now you need to use this in the web.conf (Password that protects the private key specified by 'privKeyPath'.)

sslPassword = (your privKeyPath Key password/passphrase)

Set your Password with the above settings, under [settings] and restart - see if that works. 

Get Updates on the Splunk Community!

Upcoming Webinar: Unmasking Insider Threats with Slunk Enterprise Security’s UEBA

Join us on Wed, Dec 10. at 10AM PST / 1PM EST for a live webinar and demo with Splunk experts! Discover how ...

.conf25 technical session recap of Observability for Gen AI: Monitoring LLM ...

If you’re unfamiliar, .conf is Splunk’s premier event where the Splunk community, customers, partners, and ...

A Season of Skills: New Splunk Courses to Light Up Your Learning Journey

There’s something special about this time of year—maybe it’s the glow of the holidays, maybe it’s the ...