Splunk ITSI

Why I am not able to create new cyberark identity in DB connect App?

nskpsenthil
New Member

Hi All , 

We are trying to use the CyberArk Identity functionality in DB connect add-on .
we created the safe in cyberArk and firewall is open .When we tried to create new cyberArk identity from UI (i.e  DB connect - > configuration - > identities -> NewCyberARk ) we are gettting the below error message 

"com.splunk.dbx.server.cyberark.exceptions.CredentialsRequestException: Error has occurred while getting password from CyberArk."



2023-09-1118:55:24.739 +1000 [dw-28-POST/api/identities] ERRORc.s.dbx.server.cyberark.runner.CyberArkAccessImpl-UnsuccessfulresponsefromCyberArkwitherror <!DOCTYPEhtmlPUBLIC "-//W3C//DTDXHTML1.0Strict//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd"> <htmlxmlns="http://www.w3.org/1999/xhtml"> <head> <metahttp-equiv="Content-Type" content="text/html; charset=iso-8859-1"/> <title>403-Forbidden:Accessisdenied.</title> <styletype="text/css"> <!-- body{margin:0;font-size:.7em;font-family:Verdana, Arial, Helvetica, sans-serif;background:#EEEEEE;} fieldset{padding:015px10px15px;} h1{font-size:2.4em;margin:0;color:#FFF;} h2{font-size:1.7em;margin:0;color:#CC0000;} h3{font-size:1.2em;margin:10px000;color:#000000;} #header{width:96%;margin:0000;padding:6px2%6px2%;font-family:"trebuchetMS", Verdana, sans-serif;color:#FFF; background-color:#555555;} #content{margin:0002%;position:relative;} .content-container{background:#FFF;width:96%;margin-top:8px;padding:10px;position:relative;} --> </style> </head> <body> <divid="header"><h1>ServerError</h1></div> <divid="content"> <divclass="content-container"><fieldset> <h2>403-Forbidden:Accessisdenied.</h2> <h3>Youdonothavepermissiontoviewthisdirectoryorpageusingthecredentialsthatyousupplied.</h3> </fieldset></div> </div> </body> </html>

when we tried via curl command we can able to fetch password from cyberark without  any error .

Can you please share how to add the certificate details in CyberArk identity  .
In the splunk documentation it just enter the public certificate text .


Labels (2)
0 Karma

le_hoopty
New Member

Have you asked the CyberArk admins to add your SH IP to the approved list for that safe?

0 Karma
Get Updates on the Splunk Community!

Splunk Mobile: Your Brand-New Home Screen

Meet Your New Mobile Hub  Hello Splunk Community!  Staying connected to your data—no matter where you are—is ...

Introducing Value Insights (Beta): Understand the Business Impact your organization ...

Real progress on your strategic priorities starts with knowing the business outcomes your teams are delivering ...

Enterprise Security (ES) Essentials 8.3 is Now GA — Smarter Detections, Faster ...

As of today, Enterprise Security (ES) Essentials 8.3 is now generally available, helping SOC teams simplify ...