Security

Splunk SSL certificate decryption error

Haleb
Path Finder

Hello there!
After following this docs https://docs.splunk.com/Documentation/Splunk/9.2.1/Security/Howtoself-signcertificateshttps://docs.splunk.com/Documentation/Splunk/9.2.1/Security/HowtoprepareyoursignedcertificatesforSpl...https://docs.splunk.com/Documentation/Splunk/9.2.1/Security/SecureSplunkWebusingasignedcertificate for SSL certificate installation I receive an error message when I tried to restart Splunk:
Cannot decrypt private key in "/opt/splunk/etc/auth/mycerts/myServerPrivateKey.key" without a password

web.conf
[settings]
enableSplunkWebSSL = true
privKeyPath = /opt/splunk/etc/auth/mycerts/myServerPrivateKey.key
serverCert = /opt/splunk/etc/auth/mycerts/splunkCert.pem

Any solutions for this issue will be appreciated!

Labels (2)
0 Karma
1 Solution

deepakc
Builder

Sounds like when when you generated the key for your Splunk web server (privKeyPath = /opt/splunk/etc/auth/mycerts/myServerPrivateKey.key) you set the password/passphrase)


So now you need to use this in the web.conf (Password that protects the private key specified by 'privKeyPath'.)

sslPassword = (your privKeyPath Key password/passphrase)

Set your Password with the above settings, under [settings] and restart - see if that works. 

View solution in original post

Haleb
Path Finder

It works, thanks!

0 Karma

deepakc
Builder

Sounds like when when you generated the key for your Splunk web server (privKeyPath = /opt/splunk/etc/auth/mycerts/myServerPrivateKey.key) you set the password/passphrase)


So now you need to use this in the web.conf (Password that protects the private key specified by 'privKeyPath'.)

sslPassword = (your privKeyPath Key password/passphrase)

Set your Password with the above settings, under [settings] and restart - see if that works. 

Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Persistent Queue at TcpOut — One of Splunk's Most Practical Features

Splunk introduced persistent queueing at the tcpout layer as one of the most practical resilience features in ...

Skip the Awkward Silence: Have a .conf-ersation at .conf26

Picture this. You arrive at .conf26 already having your socializing and networking plans mapped out. No ...

Rethinking Zero Trust: From Product Purchases to Logical Control Evidence

Implementing Zero Trust (ZT) across complex environments often falters at the very beginning due to a ...