Splunk Enterprise

SSL certification configuration on Splunk HF

msmadhu
Path Finder

have an SSL certificate .pem provided by my organization and I need to configure it in Splunk HF. Please assist with any document referrals or steps. I have already gone through the Splunk documentation below but had no luck

https://docs.splunk.com/Documentation/Splunk/9.4.0/Security/ConfigureandinstallcertificatesforLogObs...

Labels (1)
0 Karma

msmadhu
Path Finder

As I mentioned, I already have the sslcertificate.pem file and have followed the steps outlined in the section 'Install and configure certificates on the Splunk Enterprise management port", but not working. 

 

0 Karma

livehybrid
SplunkTrust
SplunkTrust

Hi @msmadhu 

When you say it isnt working, is Splunk starting up but you are not seeing your certificate presented? Or are there errors starting up Splunk?

I would have a look at $SPLUNK_HOME/var/log/splunk/splunkd.log for any errors relating to SSL as this might give some direction on where to go next.

Feel free to post some logs here for us to look at to try and help further.

Please let me know how you get on and consider accepting this answer or adding karma this answer if it has helped.
Regards

Will

 

0 Karma

richgalloway
SplunkTrust
SplunkTrust

Which part(s) of that document are you struggling to understand?  At what point do the steps not work for you?

---
If this reply helps you, Karma would be appreciated.
0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Data Management Digest – August 2026

MichelleCorpora_1-1788182384472.png Welcome to the August 2026 edition of Data Management Digest! August was a ...

Your Feedback. Our Roadmap. Visit the PX Feedback Booth at .conf26

You use Splunk every day, come and help shape what's next.  Save Your Seat: Product-Focused Sessions at ...

Agentic SOC Triage: Investigating Splunk ES Notables with MCP Server and a Local LLM

The Problem: Too Many Alerts, Too Little Context Security operations teams running Splunk Enterprise Security ...