Deployment Architecture

How to disable/restrict a certain url

tungpx
Explorer

Hello,

In my Splunk web service, we have the domain, for example: https://splunksh.com 

The problems is anyone can get access to https://splunksh.com/config without login. Although the page doesn't contain any sensitive data, our Cyber Security team deem it as a vulnability that need to be fix. I want to know how to either disable that url, or redirect it to the login page. Any help would be very apriciate. 

Labels (1)
Tags (1)
0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @tungpx ,

let me understand: you have a Splunk instance accessible without login (also by API)?

is it maybe a free Splunk instance? in this case the only solution is to buy a license.

Could you better describe your situation?

Ciao.

Giuseppe

 

0 Karma

tungpx
Explorer

I do have Splunk Enterprise license and my Splunk version is 9.1.1. 

The problem I have is anyone can access this url htttps:...../en-US/config and it will show up even if the user is login or not, like so 

Screenshot 2024-09-19 140716.png

0 Karma
Get Updates on the Splunk Community!

Splunk App for Anomaly Detection End of Life Announcment

Q: What is happening to the Splunk App for Anomaly Detection?A: Splunk is officially announcing the ...

Aligning Observability Costs with Business Value: Practical Strategies

 Join us for an engaging Tech Talk on Aligning Observability Costs with Business Value: Practical ...

Mastering Data Pipelines: Unlocking Value with Splunk

 In today's AI-driven world, organizations must balance the challenges of managing the explosion of data with ...