Thanks gcusello I appreciate your help. In /etc/auth/ there is a file named splunk.secret which is used to encrypt and decrypt the passwords in the configuration files. In a search head cluster, the captain replicates its splunk.secret file to all other cluster members during initial deployment of the cluster however with 2 separate cluster masters we will have different splunk.secret files. From my understanding this means we should just need to copy the splunk.secret file from the DC2 CM to the DC1 CM and recreate the hashes only on that device. Make sense ?
... View more