Splunk Enterprise

Splunk is not started after certificate update

rayar
Contributor

I have an expired certificate I am trying to update and Splunk is not raised after I apply the certificate
the steps I m running

1. /opt/splunk/bin/splunk cmd openssl genrsa -aes256 -out mySplunkWebPrivateKey.key 2048
2. /opt/splunk/bin/splunk cmd openssl rsa -in mySplunkWebPrivateKey.key -out mySplunkWebPrivateKey.key
3. /opt/splunk/bin/splunk cmd openssl req -new -key mySplunkWebPrivateKey.key -out mySplunkWebCert.csr
Generate the certificate in Amdocs certificate tool (371336.cer is created )

/opt/splunk/bin/splunk cmd openssl x509 -in 371336.cer -outform PEM -out ilissplfwd05.pem
Updated the /opt/splunk/etc/system/local/web.conf
vi /opt/splunk/etc/system/local/web.conf
privKeyPath = etc/auth/splunkweb/ilissplfwd05.key
serverCert = etc/auth/splunkweb/ilissplfwd05.pem

Labels (1)
0 Karma
Get Updates on the Splunk Community!

Splunk Mobile: Your Brand-New Home Screen

Meet Your New Mobile Hub  Hello Splunk Community!  Staying connected to your data—no matter where you are—is ...

Introducing Value Insights (Beta): Understand the Business Impact your organization ...

Real progress on your strategic priorities starts with knowing the business outcomes your teams are delivering ...

Enterprise Security (ES) Essentials 8.3 is Now GA — Smarter Detections, Faster ...

As of today, Enterprise Security (ES) Essentials 8.3 is now generally available, helping SOC teams simplify ...