<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Is it possible to disable http compression on SplunkWeb? in Security</title>
    <link>https://community.splunk.com/t5/Security/Is-it-possible-to-disable-http-compression-on-SplunkWeb/m-p/197732#M5779</link>
    <description>&lt;P&gt;I see what you're saying, I guess I should have been more specific, our vulnerability scanner is picking up a finding on the Splunk Web Interface accessible via 443 that SSL/TLS compression is enabled - behind the scenes I know CherryPy is running - and from what I can tell you can't tell it to stop using SSL Compression.&lt;/P&gt;</description>
    <pubDate>Tue, 07 Jan 2014 19:46:02 GMT</pubDate>
    <dc:creator>dask</dc:creator>
    <dc:date>2014-01-07T19:46:02Z</dc:date>
    <item>
      <title>Is it possible to disable http compression on SplunkWeb?</title>
      <link>https://community.splunk.com/t5/Security/Is-it-possible-to-disable-http-compression-on-SplunkWeb/m-p/197729#M5776</link>
      <description>&lt;P&gt;For splunkd on the indexer you can set a value in the server.conf file as such:&lt;/P&gt;

&lt;P&gt;allowSslCompression = false&lt;/P&gt;

&lt;P&gt;Is there an ability to do this for splunkweb?&lt;/P&gt;

&lt;P&gt;There doesn't seem to be a setting to disable ssl Compression in web.conf&lt;/P&gt;</description>
      <pubDate>Tue, 07 Jan 2014 18:32:09 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/Is-it-possible-to-disable-http-compression-on-SplunkWeb/m-p/197729#M5776</guid>
      <dc:creator>dask</dc:creator>
      <dc:date>2014-01-07T18:32:09Z</dc:date>
    </item>
    <item>
      <title>Re: Is it possible to disable http compression on SplunkWeb?</title>
      <link>https://community.splunk.com/t5/Security/Is-it-possible-to-disable-http-compression-on-SplunkWeb/m-p/197730#M5777</link>
      <description>&lt;P&gt;Title should be SSL compression but the Captcha keeps failing for some reason&lt;/P&gt;</description>
      <pubDate>Tue, 07 Jan 2014 18:48:45 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/Is-it-possible-to-disable-http-compression-on-SplunkWeb/m-p/197730#M5777</guid>
      <dc:creator>dask</dc:creator>
      <dc:date>2014-01-07T18:48:45Z</dc:date>
    </item>
    <item>
      <title>Re: Is it possible to disable http compression on SplunkWeb?</title>
      <link>https://community.splunk.com/t5/Security/Is-it-possible-to-disable-http-compression-on-SplunkWeb/m-p/197731#M5778</link>
      <description>&lt;P&gt;server.conf is for a general splunk server. It should apply to both indexers and searchheads, imo. &lt;/P&gt;

&lt;P&gt;You can run btool on the search head to determine what the current setting is: &lt;CODE&gt;/opt/splunk/bin/splunk cmd btool --debug server list&lt;/CODE&gt;&lt;/P&gt;

&lt;P&gt;EDIT:&lt;/P&gt;

&lt;P&gt;You might like this: &lt;CODE&gt;&lt;A href="http://www.georgestarcher.com/?p=674" target="test_blank"&gt;http://www.georgestarcher.com/?p=674&lt;/A&gt;&lt;/CODE&gt;. This might be relevant: &lt;CODE&gt;&lt;A href="http://answers.splunk.com/answers/65218/splunk-shows-vulnerable-to-cve-2012-4929-in-my-nessus-vulnerability-scan-what-is-going-on" target="test_blank"&gt;http://answers.splunk.com/answers/65218/splunk-shows-vulnerable-to-cve-2012-4929-in-my-nessus-vulnerability-scan-what-is-going-on&lt;/A&gt;&lt;/CODE&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 07 Jan 2014 19:40:58 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/Is-it-possible-to-disable-http-compression-on-SplunkWeb/m-p/197731#M5778</guid>
      <dc:creator>alacercogitatus</dc:creator>
      <dc:date>2014-01-07T19:40:58Z</dc:date>
    </item>
    <item>
      <title>Re: Is it possible to disable http compression on SplunkWeb?</title>
      <link>https://community.splunk.com/t5/Security/Is-it-possible-to-disable-http-compression-on-SplunkWeb/m-p/197732#M5779</link>
      <description>&lt;P&gt;I see what you're saying, I guess I should have been more specific, our vulnerability scanner is picking up a finding on the Splunk Web Interface accessible via 443 that SSL/TLS compression is enabled - behind the scenes I know CherryPy is running - and from what I can tell you can't tell it to stop using SSL Compression.&lt;/P&gt;</description>
      <pubDate>Tue, 07 Jan 2014 19:46:02 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/Is-it-possible-to-disable-http-compression-on-SplunkWeb/m-p/197732#M5779</guid>
      <dc:creator>dask</dc:creator>
      <dc:date>2014-01-07T19:46:02Z</dc:date>
    </item>
    <item>
      <title>Re: Is it possible to disable http compression on SplunkWeb?</title>
      <link>https://community.splunk.com/t5/Security/Is-it-possible-to-disable-http-compression-on-SplunkWeb/m-p/197733#M5780</link>
      <description>&lt;P&gt;You might like this: &lt;CODE&gt;&lt;A href="http://www.georgestarcher.com/?p=674" target="test_blank"&gt;http://www.georgestarcher.com/?p=674&lt;/A&gt;&lt;/CODE&gt;. This might be relevant: &lt;CODE&gt;&lt;A href="http://answers.splunk.com/answers/65218/splunk-shows-vulnerable-to-cve-2012-4929-in-my-nessus-vulnerability-scan-what-is-going-on" target="test_blank"&gt;http://answers.splunk.com/answers/65218/splunk-shows-vulnerable-to-cve-2012-4929-in-my-nessus-vulnerability-scan-what-is-going-on&lt;/A&gt;&lt;/CODE&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 07 Jan 2014 19:50:06 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/Is-it-possible-to-disable-http-compression-on-SplunkWeb/m-p/197733#M5780</guid>
      <dc:creator>alacercogitatus</dc:creator>
      <dc:date>2014-01-07T19:50:06Z</dc:date>
    </item>
  </channel>
</rss>

