<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Website monitoring - CSRF validation failed in All Apps and Add-ons</title>
    <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Website-monitoring-CSRF-validation-failed-How-can-I-fix/m-p/642318#M79100</link>
    <description>&lt;P&gt;Me too&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Any fixes for this?&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Thu, 04 May 2023 15:48:25 GMT</pubDate>
    <dc:creator>kcooper</dc:creator>
    <dc:date>2023-05-04T15:48:25Z</dc:date>
    <item>
      <title>Website monitoring - CSRF validation failed- How can I fix?</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Website-monitoring-CSRF-validation-failed-How-can-I-fix/m-p/623772#M78106</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;does anyone has experience with &lt;A href="https://splunkbase.splunk.com/app/1493" target="_self"&gt;website monitoring app&lt;/A&gt;&amp;nbsp;&lt;BR /&gt;I am facing issue with adding inputs, especially if input (check) requires&amp;nbsp;&lt;SPAN&gt;HTTP Authentication.&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;error is : "&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN&gt;401 Splunk cannot authenticate the request. CSRF validation failed "&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;LI-CODE lang="markup"&gt;Request URL: https://xxxx:8443/en-US/splunkd/__raw/services/storage/passwords?output_mode=json
Request Method: POST
Status Code: 401 Splunk cannot authenticate the request. CSRF validation failed.
Remote Address: 10.217.11.78:8443
Referrer Policy: no-referrer&lt;/LI-CODE&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;I find out that request is missing one header parameter&amp;nbsp;&lt;STRONG&gt;X-Splunk-Form-Key&lt;BR /&gt;&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;SPAN&gt;requestURL:&amp;nbsp;&lt;SPAN&gt;en-US/splunkd/__raw/services/storage/passwords?output_mode=json&lt;BR /&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;SPAN&gt;request header:&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;LI-CODE lang="markup"&gt;Accept: text/javascript, text/html, application/xml, text/xml, */*
Accept-Encoding: gzip, deflate, br
Accept-Language: en-GB,en-US;q=0.9,en;q=0.8,sk;q=0.7
Connection: keep-alive
Content-Length: 61
Content-Type: application/x-www-form-urlencoded; charset=UTF-8
Cookie: mintjs%3Auuid=02ced06b-7ec3-40e2-8e0b-91040e343001; built_by_tabuilder=yes; ta_builder_current_ta_name=TA-splunk-backup; ta_builder_current_ta_display_name=Splunk%20backup; splunkweb_csrf_token_8443=1505950XXXXXXXXXXX; session_id_8443=6e995a2d52b3a34ade550aafff50XXXXXXXXXXX; splunkd_8443=OUucWpZKKsQtgnedQ98lJ5VRCosW7HAdUh6fia3B^Q^D9HofK5tn11AwTAEiKXhzUL_HPsAiG91v8evtXcVri9MYUmXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXX0fCIm84az_izL
Host: xxxx:8443
Origin: https://xxxx:8443
sec-ch-ua: "Not?A_Brand";v="8", "Chromium";v="108", "Google Chrome";v="108"
sec-ch-ua-mobile: ?0
sec-ch-ua-platform: "Windows"
Sec-Fetch-Dest: empty
Sec-Fetch-Mode: cors
Sec-Fetch-Site: same-origin
User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36
X-Requested-With: XMLHttpRequest&lt;/LI-CODE&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Response header :&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;LI-CODE lang="markup"&gt;Connection: Keep-Alive
Content-Length: 104
Content-Type: application/json; charset=UTF-8
Date: Thu, 08 Dec 2022 23:06:45 GMT
Server: Splunkd
Vary: Cookie
X-Content-Type-Options: nosniff
X-Frame-Options: SAMEORIGIN&lt;/LI-CODE&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Any idea why is this parameter missing?&amp;nbsp;&lt;BR /&gt;Splunk runs on linux&amp;nbsp;&lt;BR /&gt;I tried : clear cache, incognito window,&lt;/P&gt;</description>
      <pubDate>Thu, 04 May 2023 15:54:49 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Website-monitoring-CSRF-validation-failed-How-can-I-fix/m-p/623772#M78106</guid>
      <dc:creator>lubosjacko</dc:creator>
      <dc:date>2023-05-04T15:54:49Z</dc:date>
    </item>
    <item>
      <title>Re: Website monitoring - CSRF validation failed</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Website-monitoring-CSRF-validation-failed-How-can-I-fix/m-p/635385#M78753</link>
      <description>&lt;P&gt;Hi. Any solution to this, i have the same issue get this in the log.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;ERROR&lt;/SPAN&gt;&lt;/SPAN&gt; &lt;SPAN class=""&gt;UiAuth&lt;/SPAN&gt;&lt;SPAN&gt; [&lt;/SPAN&gt;&amp;nbsp;&lt;SPAN class=""&gt;TcpChannelThread&lt;/SPAN&gt;&lt;SPAN&gt;] &lt;/SPAN&gt;&lt;SPAN class=""&gt;-&lt;/SPAN&gt; &lt;SPAN class=""&gt;Request&lt;/SPAN&gt; &lt;SPAN class=""&gt;from&lt;/SPAN&gt; &lt;SPAN class=""&gt;/en-US/splunkd/__raw/services/storage/&lt;SPAN class=""&gt;password&lt;/SPAN&gt;s&lt;/SPAN&gt;&lt;SPAN&gt;?&lt;/SPAN&gt;&lt;SPAN class=""&gt;output_mode=json&lt;/SPAN&gt;&lt;SPAN&gt;" &lt;/SPAN&gt;&lt;SPAN class=""&gt;failed&lt;/SPAN&gt; &lt;SPAN class=""&gt;CSRF&lt;/SPAN&gt; &lt;SPAN class=""&gt;validation&lt;/SPAN&gt;&lt;SPAN&gt; -- &lt;/SPAN&gt;&lt;SPAN class=""&gt;expected&lt;/SPAN&gt; &lt;SPAN class=""&gt;key&lt;/SPAN&gt;&lt;SPAN&gt; "[&lt;/SPAN&gt;&lt;SPAN class=""&gt;REDACTED&lt;/SPAN&gt;&lt;SPAN&gt;]&lt;/SPAN&gt;&lt;SPAN class=""&gt;3146&lt;/SPAN&gt;&lt;SPAN&gt;" &lt;/SPAN&gt;&lt;SPAN class=""&gt;and&lt;/SPAN&gt; &lt;SPAN class=""&gt;header&lt;/SPAN&gt; &lt;SPAN class=""&gt;had&lt;/SPAN&gt; &lt;SPAN class=""&gt;key&lt;/SPAN&gt;&lt;SPAN&gt; ""&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 21 Mar 2023 18:58:53 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Website-monitoring-CSRF-validation-failed-How-can-I-fix/m-p/635385#M78753</guid>
      <dc:creator>tomassplunk</dc:creator>
      <dc:date>2023-03-21T18:58:53Z</dc:date>
    </item>
    <item>
      <title>Re: Website monitoring - CSRF validation failed</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Website-monitoring-CSRF-validation-failed-How-can-I-fix/m-p/635718#M78766</link>
      <description>&lt;P&gt;I was able to resolve these issues by clearing browser cache and cookies while testing some input configurations for Salesforce Streaming add-on.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 23 Mar 2023 13:27:56 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Website-monitoring-CSRF-validation-failed-How-can-I-fix/m-p/635718#M78766</guid>
      <dc:creator>Gr0und_Z3r0</dc:creator>
      <dc:date>2023-03-23T13:27:56Z</dc:date>
    </item>
    <item>
      <title>Re: Website monitoring - CSRF validation failed</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Website-monitoring-CSRF-validation-failed-How-can-I-fix/m-p/642318#M79100</link>
      <description>&lt;P&gt;Me too&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Any fixes for this?&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 04 May 2023 15:48:25 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Website-monitoring-CSRF-validation-failed-How-can-I-fix/m-p/642318#M79100</guid>
      <dc:creator>kcooper</dc:creator>
      <dc:date>2023-05-04T15:48:25Z</dc:date>
    </item>
  </channel>
</rss>

