I am also digging into this. It is helpful to know that with newer Splunk stuff it has been moved to a different website. How to prepare TLS certificates for use with the Splunk platform | Splunk Docs looks like Splunk changed how some of the stuff works in 9.4 - 10. That being said the above link is a good way to verify if your pem files are correct. Currently we are stuck on the: SAN OtherName not found for configured OIDs in client certificate CertBasedUserAuth: error fetching username from client certificate
... View more