Security

Splunk SSL certificate decryption error

Haleb
Path Finder

Hello there!
After following this docs https://docs.splunk.com/Documentation/Splunk/9.2.1/Security/Howtoself-signcertificateshttps://docs.splunk.com/Documentation/Splunk/9.2.1/Security/HowtoprepareyoursignedcertificatesforSpl...https://docs.splunk.com/Documentation/Splunk/9.2.1/Security/SecureSplunkWebusingasignedcertificate for SSL certificate installation I receive an error message when I tried to restart Splunk:
Cannot decrypt private key in "/opt/splunk/etc/auth/mycerts/myServerPrivateKey.key" without a password

web.conf
[settings]
enableSplunkWebSSL = true
privKeyPath = /opt/splunk/etc/auth/mycerts/myServerPrivateKey.key
serverCert = /opt/splunk/etc/auth/mycerts/splunkCert.pem

Any solutions for this issue will be appreciated!

Labels (2)
0 Karma
1 Solution

deepakc
Builder

Sounds like when when you generated the key for your Splunk web server (privKeyPath = /opt/splunk/etc/auth/mycerts/myServerPrivateKey.key) you set the password/passphrase)


So now you need to use this in the web.conf (Password that protects the private key specified by 'privKeyPath'.)

sslPassword = (your privKeyPath Key password/passphrase)

Set your Password with the above settings, under [settings] and restart - see if that works. 

View solution in original post

Haleb
Path Finder

It works, thanks!

0 Karma

deepakc
Builder

Sounds like when when you generated the key for your Splunk web server (privKeyPath = /opt/splunk/etc/auth/mycerts/myServerPrivateKey.key) you set the password/passphrase)


So now you need to use this in the web.conf (Password that protects the private key specified by 'privKeyPath'.)

sslPassword = (your privKeyPath Key password/passphrase)

Set your Password with the above settings, under [settings] and restart - see if that works. 

Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Rethinking Zero Trust: From Product Purchases to Logical Control Evidence

Implementing Zero Trust (ZT) across complex environments often falters at the very beginning due to a ...

Preparing your Splunk Environment for OpenSSL3

The Splunk platform will transition to OpenSSL version 3 in a future release. Actions are required to prepare ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...