Dashboards & Visualizations

Splunk through Cisco ASA Clientless WebVPN (Bug?)

ultima
Explorer

When using Splunk through Cisco ASA Clientless WebVPN, none of the dropdown menus work.

Am i doing something wrong, is it a bug, or is it just the way the dropdown menus work that cannot be used through a proxy system like WebVPN ?

1 Solution

gkanapathy
Splunk Employee
Splunk Employee

This kind of "VPN", which relies on rewriting URLs as they go in and out, are inherently very limited with any web application that uses browser-side script, especially if that script performs call-backs. (This includes just about web application with a modern UI. Flash is even less likely to work.) I am surprised that the only thing you have seen is the dropdowns failing.

This is not a Splunk bug, but a limitation of the type of gateway you are using.

View solution in original post

gkanapathy
Splunk Employee
Splunk Employee

This kind of "VPN", which relies on rewriting URLs as they go in and out, are inherently very limited with any web application that uses browser-side script, especially if that script performs call-backs. (This includes just about web application with a modern UI. Flash is even less likely to work.) I am surprised that the only thing you have seen is the dropdowns failing.

This is not a Splunk bug, but a limitation of the type of gateway you are using.

dwaddle
SplunkTrust
SplunkTrust

If your IT team will support/allow it, the Cisco WebVPN should be able to use the "Anyconnect" client to give you "true" connectivity through the WebVPN, which would be an acceptable workaround for this.

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Your Feedback. Our Roadmap. Visit the PX Feedback Booth at .conf26

You use Splunk every day, come and help shape what's next.  Save Your Seat: Product-Focused Sessions at ...

Agentic SOC Triage: Investigating Splunk ES Notables with MCP Server and a Local LLM

The Problem: Too Many Alerts, Too Little Context Security operations teams running Splunk Enterprise Security ...

Painting a Clearer Picture: Creating Cross-Domain Visibility with AI Canvas

Watch Now Painting a Clearer Picture: Creating Cross-Domain Visibility with AI Canvas     Do you ever feel ...