Splunk Dev

Splunk JS SDK password API response returns plain password

mbachhav
Path Finder

I have used Splunk setup view as a replacement of setup.xml.

For this, I have used Splunk JS SDK. I have a password field on the setup page. JS SDK saves the encrypted password in the 'local/FILENAME.conf' file.

This JS SDK internally calls Splunk API. The password API(https://{HOST_NAME}/en-US/splunkd/__raw/servicesNS/nobody/{TA_NAME}/storage/passwords?count=0&output_mode=json) response returns both plain password & encrypted password.

How to avoid plain password in Splunk's password API response?

Thanks in advance.

Labels (3)
0 Karma
Get Updates on the Splunk Community!

.conf24 | Day 0

Hello Splunk Community! My name is Chris, and I'm based in Canberra, Australia's capital, and I travelled for ...

Enhance Security Visibility with Splunk Enterprise Security 7.1 through Threat ...

 (view in My Videos)Struggling with alert fatigue, lack of context, and prioritization around security ...

Troubleshooting the OpenTelemetry Collector

  In this tech talk, you’ll learn how to troubleshoot the OpenTelemetry collector - from checking the ...