Getting Data In

Splunk Add-On Builder UI is Blank/Won't Load

marycordova
SplunkTrust
SplunkTrust

I've installed the Splunk Add-On Builder but the UI is blank/won't load...I've tried installing on my HF (Heavy Forwarder) and my DS (Deployment Server) (HF is under a lot of load) but still the problem persists.  

@marycordova
0 Karma
1 Solution

marycordova
SplunkTrust
SplunkTrust

I opened a support ticket, and they discovered that my Okta/SAML/SSO had a "role" (for my SH (search head)) that was not present on my DS or HF (it wasn't necessary).  However, my account was inheriting the "admin" role so IMO it shouldn't have mattered.  I added the "role" to my HF and DS and was able to proceed.  

But then...it happened again in another part of the UI.  I opened another support ticket and the advice was not to use Add-On Builder in a distributed environment...which didn't make sense, what would having a distributed environment have to do with it?  

What Add-On Builder does not like, I suspect, is basically any instance of Splunk with "roles" associated to accounts that are not the local/default admin and ONLY the local/default admin.

I deployed a stand-alone, local, Enterprise instance on my laptop NOT integrated with Okta/SAML/SSO and everything works fine...so that is the solution 😋

@marycordova

View solution in original post

0 Karma

marycordova
SplunkTrust
SplunkTrust

I opened a support ticket, and they discovered that my Okta/SAML/SSO had a "role" (for my SH (search head)) that was not present on my DS or HF (it wasn't necessary).  However, my account was inheriting the "admin" role so IMO it shouldn't have mattered.  I added the "role" to my HF and DS and was able to proceed.  

But then...it happened again in another part of the UI.  I opened another support ticket and the advice was not to use Add-On Builder in a distributed environment...which didn't make sense, what would having a distributed environment have to do with it?  

What Add-On Builder does not like, I suspect, is basically any instance of Splunk with "roles" associated to accounts that are not the local/default admin and ONLY the local/default admin.

I deployed a stand-alone, local, Enterprise instance on my laptop NOT integrated with Okta/SAML/SSO and everything works fine...so that is the solution 😋

@marycordova
0 Karma

livehybrid
SplunkTrust
SplunkTrust

Hi @marycordova 

When you navigate to the UI, try opening DevTools/Console (this depends per browser) and have a look at the console when you load the Add-on builder UI - are there any errors or 4xx/5xx errors in there? This might help point to why it isnt loading correctly.

Let us know if you see any errors and can try and help further.

Regards

Will

0 Karma

Shakira1
Explorer

I have the same issue

I installed it locally on Splunk local host, and the page "home" is empty 

 any idea?

Screenshot 2025-02-19 at 18.16.03.png

0 Karma

marycordova
SplunkTrust
SplunkTrust

Make sure you are using the local/default admin account and that there are no other roles associated with that account. 

@marycordova
0 Karma

Shakira1
Explorer

Yes.

this is my localhost so I use admin local user (the default one) and its have the max permission 

0 Karma
Career Survey
First 500 qualified respondents will receive a $20 gift card! Tell us about your professional Splunk journey.
Get Updates on the Splunk Community!

Calling All Security Pros: Ready to Race Through Boston?

Hey Splunkers, .conf25 is heading to Boston and we’re kicking things off with something bold, competitive, and ...

Beyond Detection: How Splunk and Cisco Integrated Security Platforms Transform ...

Financial services organizations face an impossible equation: maintain 99.9% uptime for mission-critical ...

Customer success is front and center at .conf25

Hi Splunkers, If you are not able to be at .conf25 in person, you can still learn about all the latest news ...