Security

Why is my search peer SSL Config check failing?

aatik5u
Path Finder

Hello there!

I am working on a test environment where I only have one Splunk instance. I have succeeded to have a secure Splunk web with ssl.  I have the following problem:

aatik5u_0-1671098584745.png

 

Here are my config files:

web.conf

[settings]
enableSplunkWebSSL = true
privKeyPath = <path to key>
serverCert = <path to certificate>

 

Server.conf

[sslConfig]
sslPassword = password
sslVerifyServerCert = True
sslVerifyServerName = True
serverCert = <path to certificate>
cliVerifyServerName = true
sslRootCAPath = <path to CA certificate>

[kvstore]
serverCert = <path to certificate>
sslPassword = password
sslVerifyServerCert = True
sslVerifyServerName = True

[pythonSslClientConfig]
sslVerifyServerCert = true
sslVerifyServerName = true

 

splunk-launch.conf

PYTHONHTTPSVERIFY = 1
SPLUNK_FIPS=1

 

I know that the configuration for securing the environment with TLS has changed since the 9.0 version of Splunk enterprise.

My CLI doesn't display any warning or error.

I have followed everything suggested in these links: 

 

Any help would be appreciated !

Regards

Labels (3)
Tags (2)
0 Karma
Get Updates on the Splunk Community!

Technical Workshop Series: Splunk Data Management and SPL2 | Register here!

Hey, Splunk Community! Ready to take your data management skills to the next level? Join us for a 3-part ...

Spotting Financial Fraud in the Haystack: A Guide to Behavioral Analytics with Splunk

In today's digital financial ecosystem, security teams face an unprecedented challenge. The sheer volume of ...

Solve Problems Faster with New, Smarter AI and Integrations in Splunk Observability

Solve Problems Faster with New, Smarter AI and Integrations in Splunk Observability As businesses scale ...