<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Splunk login page blank from outside after upgrade to 6.2 in Security</title>
    <link>https://community.splunk.com/t5/Security/Splunk-login-page-blank-from-outside-after-upgrade-to-6-2/m-p/195272#M5739</link>
    <description>&lt;P&gt;One little thing you could check as well &lt;A href="http://answers.splunk.com/answers/137114/adblock-and-splunkweb.html"&gt;http://answers.splunk.com/answers/137114/adblock-and-splunkweb.html&lt;/A&gt;&lt;/P&gt;</description>
    <pubDate>Sun, 09 Nov 2014 09:23:52 GMT</pubDate>
    <dc:creator>MuS</dc:creator>
    <dc:date>2014-11-09T09:23:52Z</dc:date>
    <item>
      <title>Splunk login page blank from outside after upgrade to 6.2</title>
      <link>https://community.splunk.com/t5/Security/Splunk-login-page-blank-from-outside-after-upgrade-to-6-2/m-p/195271#M5738</link>
      <description>&lt;P&gt;Hello Everyone,&lt;BR /&gt;
I have a Splunk installation that is externally facing for remote access. After upgrading to 6.2 to fix some issues I now get a blank login screen when i browse to the site externally. Viewing the source code of the page shows a bunch of javascript so I know stuff is being returned from the server however the page appears blank. Internally the splunk login page loads 100% normally and I can access it without any issues. I noticed in the release notes there is mention of 2 new ports being used by 6.2. I was wondering if this had something to do with the situation as I have not done any NAT rules for these ports from the outside. The upgrade notes did not mention this requirement anywhere that I saw. Just wondering if this is an issue anyone else has seen moving up to 6.2?&lt;BR /&gt;
Thanks in advance for any help you folks can provide!&lt;/P&gt;</description>
      <pubDate>Sat, 08 Nov 2014 22:20:10 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/Splunk-login-page-blank-from-outside-after-upgrade-to-6-2/m-p/195271#M5738</guid>
      <dc:creator>john_h_thomas</dc:creator>
      <dc:date>2014-11-08T22:20:10Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk login page blank from outside after upgrade to 6.2</title>
      <link>https://community.splunk.com/t5/Security/Splunk-login-page-blank-from-outside-after-upgrade-to-6-2/m-p/195272#M5739</link>
      <description>&lt;P&gt;One little thing you could check as well &lt;A href="http://answers.splunk.com/answers/137114/adblock-and-splunkweb.html"&gt;http://answers.splunk.com/answers/137114/adblock-and-splunkweb.html&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 09 Nov 2014 09:23:52 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/Splunk-login-page-blank-from-outside-after-upgrade-to-6-2/m-p/195272#M5739</guid>
      <dc:creator>MuS</dc:creator>
      <dc:date>2014-11-09T09:23:52Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk login page blank from outside after upgrade to 6.2</title>
      <link>https://community.splunk.com/t5/Security/Splunk-login-page-blank-from-outside-after-upgrade-to-6-2/m-p/195273#M5740</link>
      <description>&lt;P&gt;Hi John,&lt;/P&gt;

&lt;P&gt;We had the same thing happen here - upgraded to 6.2 from 6.0.3,&lt;BR /&gt;
restarted the search heads after upgrade,&lt;BR /&gt;
and the page wouldn't render anything other than a background colour in a browser.&lt;BR /&gt;
This effect happened when viewing the page through our F5 load-balancers (https/port 443),&lt;BR /&gt;
it did not happen when viewing the back-end directly (http/port 8000)&lt;/P&gt;

&lt;P&gt;yannK's answer to "Upgraded to 6 and the login page for splunk-web is broken"[2] helped - I:&lt;/P&gt;

&lt;UL&gt;
&lt;LI&gt;deleted the contents of $SPLUNK_HOME/var/run/splunk/appserver/&lt;/LI&gt;
&lt;LI&gt;restarted browser a few times&lt;/LI&gt;
&lt;LI&gt;restarted the search head&lt;/LI&gt;
&lt;/UL&gt;

&lt;P&gt;and it eventually rendered properly every time.&lt;/P&gt;

&lt;P&gt;--Benji&lt;/P&gt;</description>
      <pubDate>Mon, 10 Nov 2014 05:03:23 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/Splunk-login-page-blank-from-outside-after-upgrade-to-6-2/m-p/195273#M5740</guid>
      <dc:creator>bwakely</dc:creator>
      <dc:date>2014-11-10T05:03:23Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk login page blank from outside after upgrade to 6.2</title>
      <link>https://community.splunk.com/t5/Security/Splunk-login-page-blank-from-outside-after-upgrade-to-6-2/m-p/195274#M5741</link>
      <description>&lt;P&gt;Excellent. This is behind an F5 as well. I'll try your solution and let you know how it goes. Thank you very much!&lt;/P&gt;</description>
      <pubDate>Mon, 10 Nov 2014 05:07:45 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/Splunk-login-page-blank-from-outside-after-upgrade-to-6-2/m-p/195274#M5741</guid>
      <dc:creator>john_h_thomas</dc:creator>
      <dc:date>2014-11-10T05:07:45Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk login page blank from outside after upgrade to 6.2</title>
      <link>https://community.splunk.com/t5/Security/Splunk-login-page-blank-from-outside-after-upgrade-to-6-2/m-p/195275#M5742</link>
      <description>&lt;P&gt;Hey bwakely,&lt;BR /&gt;
So I tired this the other day and unfortunately it's still not working. Are there any other steps you took to correct the issue? I find it interesting that the F5 is a common variable here and I'm wondering if you changed anything on the virtual server for splunk or anything along those lines while troubleshooting? Thanks for the assistance!&lt;/P&gt;</description>
      <pubDate>Thu, 13 Nov 2014 15:15:20 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/Splunk-login-page-blank-from-outside-after-upgrade-to-6-2/m-p/195275#M5742</guid>
      <dc:creator>john_h_thomas</dc:creator>
      <dc:date>2014-11-13T15:15:20Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk login page blank from outside after upgrade to 6.2</title>
      <link>https://community.splunk.com/t5/Security/Splunk-login-page-blank-from-outside-after-upgrade-to-6-2/m-p/195276#M5743</link>
      <description>&lt;P&gt;...Yes.  Yes, we did.  Sorry, it had been a busy few days and it slipped my mind.&lt;/P&gt;

&lt;P&gt;We're using F5 LTM, 11.5.1, hotfix 5&lt;BR /&gt;
    (Hotfix-BIGIP-11.5.1.5.0.147-HF5.iso)&lt;/P&gt;

&lt;P&gt;We had set our virtual server to use an SSL certificate with SSLv3 explicitly enabled,&lt;BR /&gt;
and F5 no longer offers that as an option.&lt;/P&gt;

&lt;P&gt;&lt;STRONG&gt;Virtual server reconfigured to use SSL cert with SSLv3 disabled:&lt;/STRONG&gt;&lt;/P&gt;

&lt;P&gt;&lt;EM&gt;Local Traffic &amp;gt;&amp;gt; Virtual Servers : Virtual Server List &amp;gt;&amp;gt; vs_splunk.latrobe.edu.au_443&lt;/EM&gt;&lt;/P&gt;

&lt;UL&gt;
&lt;LI&gt;Switched the SSL certificate from the existing one to one with SSLv3 disabled.&lt;/LI&gt;
&lt;/UL&gt;

&lt;P&gt;&lt;STRONG&gt;Disabled SSLv3 in the SSL Certificate / client profile:&lt;/STRONG&gt;&lt;/P&gt;

&lt;P&gt;&lt;EM&gt;Profile &amp;gt;&amp;gt; SSL &amp;gt;&amp;gt; Client&lt;/EM&gt;&lt;/P&gt;

&lt;P&gt;In the SSL certificate profile in question,&lt;/P&gt;

&lt;P&gt;select: "Configuration: Advanced"&lt;/P&gt;

&lt;P&gt;In the 'ciphers' section, alter:&lt;/P&gt;

&lt;PRE&gt;&lt;CODE&gt;!EXPORT:!DH:!MD5:RSA+AES:RSA+3DES:RSA+RC4:ECDHE+AES:ECDHE+3DES:ECDHE+RSA:@SPEED
&lt;/CODE&gt;&lt;/PRE&gt;

&lt;P&gt;to&lt;/P&gt;

&lt;PRE&gt;&lt;CODE&gt;DEFAULT
&lt;/CODE&gt;&lt;/PRE&gt;

&lt;P&gt;Possibly relevant reading:&lt;/P&gt;

&lt;P&gt;&lt;A href="https://devcentral.f5.com/articles/cve-2014-3566-removing-sslv3-from-big-ip" target="_blank"&gt;https://devcentral.f5.com/articles/cve-2014-3566-removing-sslv3-from-big-ip&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;&lt;A href="https://support.f5.com/kb/en-us/solutions/public/15000/700/sol15702.html" target="_blank"&gt;https://support.f5.com/kb/en-us/solutions/public/15000/700/sol15702.html&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;See if that helps.&lt;/P&gt;</description>
      <pubDate>Mon, 28 Sep 2020 18:10:46 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/Splunk-login-page-blank-from-outside-after-upgrade-to-6-2/m-p/195276#M5743</guid>
      <dc:creator>bwakely</dc:creator>
      <dc:date>2020-09-28T18:10:46Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk login page blank from outside after upgrade to 6.2</title>
      <link>https://community.splunk.com/t5/Security/Splunk-login-page-blank-from-outside-after-upgrade-to-6-2/m-p/195277#M5744</link>
      <description>&lt;P&gt;I've got the same problem (black page with no message) with 6.2 behind a Checkpoint vpnssl in web portal mode.(Firefox browser used)&lt;BR /&gt;
No problem accessing directly or in tunnel mode via vpnssl.&lt;BR /&gt;
I don't know if it worked with previous splunk versions.&lt;BR /&gt;
I'm not using https on splunk on this instance so this is not the problem.(url=&lt;A href="http://ip:8000/"&gt;http://ip:8000/&lt;/A&gt;)&lt;BR /&gt;
I can see some splunk code rewritten by the vpnssl in the source code so the vpnssl is reaching splunk.&lt;/P&gt;

&lt;P&gt;Anybody could access a splunk instance through a Checkpoint vpnssl ?&lt;/P&gt;</description>
      <pubDate>Tue, 02 Dec 2014 08:59:58 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/Splunk-login-page-blank-from-outside-after-upgrade-to-6-2/m-p/195277#M5744</guid>
      <dc:creator>matthieu_araman</dc:creator>
      <dc:date>2014-12-02T08:59:58Z</dc:date>
    </item>
  </channel>
</rss>

