All Apps and Add-ons

Did not receive a session key from splunkd. Please enable passAuth in inputs.conf (other answer didn't work)

macd0170
New Member

I have am error with ver 4.2.4 and ACI v.3.2(5d). I am not getting any data and splunkd.log if full of error messages that end with "Did not receive a session key from splunkd. Please enable passAuth in inputs.conf"

Even though this was working, because of the answer in 506764, I deleted the whole app and reinstalled it while selecting "disable SSL" in the config. Now my password.conf file is:

[credentials:host1,host2,host3:username,False:
password = hash

0 Karma

bharat097
New Member

hi @macd0170
try this if it helps.
in default/inputs.conf add/replace one kv pair under each stanza as passAuth = user_with_admin_role

0 Karma

Vijeta
Influencer

@macd0170 Do you have the password for the host ? update the password in password.conf file and restart splunk it will encrypt the password. Or if you want to do configuration using UI then comment this entire file and restart splunk , you will be able to configure add-on using UI.

0 Karma
Get Updates on the Splunk Community!

Tech Talk Recap | Mastering Threat Hunting

Mastering Threat HuntingDive into the world of threat hunting, exploring the key differences between ...

Observability for AI Applications: Troubleshooting Latency

If you’re working with proprietary company data, you’re probably going to have a locally hosted LLM or many ...

Splunk AI Assistant for SPL vs. ChatGPT: Which One is Better?

In the age of AI, every tool promises to make our lives easier. From summarizing content to writing code, ...