Splunk Enterprise

Splunk Add-on for AWS > unable to get local issuer certificate (_ssl.c:1091)

iAmSaugata
New Member

Hi,

I am trying to configure CloudTrail via S3 in Splunk Add-on for AWS, but after configuring, it getting failed to validate the certificate, i have already added local certificate in cacert.pem on the following locations.

D:\Program Files\Splunk\etc\apps\Splunk_TA_aws\bin\3rdparty\python3\certifi
D:\Program Files\Splunk\etc\apps\Splunk_TA_aws\bin\3rdparty\python3\botocore
D:\Program Files\Splunk\Python-3.7\Lib\site-packages\certifi
D:\Program Files\Splunk\Python-3.7\Lib\site-packages\botocore
D:\Program Files\Splunk\Python-3.7\Lib\site-packages\botocore\vendored\requests

But as of now no luck, still getting same error.
Error:

 

 

  File "D:\Program Files\Splunk\Python-3.7\lib\http\client.py", line 966, in send
    self.connect()
  File "D:\Program Files\Splunk\etc\apps\Splunk_TA_aws\bin\3rdparty\python3\boto\https_connection.py", line 131, in connect
    ca_certs=self.ca_certs)
  File "D:\Program Files\Splunk\Python-3.7\lib\ssl.py", line 1238, in wrap_socket
    suppress_ragged_eofs=suppress_ragged_eofs
  File "D:\Program Files\Splunk\Python-3.7\lib\ssl.py", line 423, in wrap_socket
    session=session
  File "D:\Program Files\Splunk\Python-3.7\lib\ssl.py", line 870, in _create
    self.do_handshake()
  File "D:\Program Files\Splunk\Python-3.7\lib\ssl.py", line 1139, in do_handshake
    self._sslobj.do_handshake()
ssl.SSLCertVerificationError: [SSL: CERTIFICATE_VERIFY_FAILED] certificate verify failed: unable to get local issuer certificate (_ssl.c:1091)

 

 

Regards,
Saugata D

Labels (1)
0 Karma
Get Updates on the Splunk Community!

Enterprise Security Content Update (ESCU) | New Releases

In December, the Splunk Threat Research Team had 1 release of new security content via the Enterprise Security ...

Why am I not seeing the finding in Splunk Enterprise Security Analyst Queue?

(This is the first of a series of 2 blogs). Splunk Enterprise Security is a fantastic tool that offers robust ...

Index This | What are the 12 Days of Splunk-mas?

December 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...