Getting Data In

Splunk Add-On Builder UI is Blank/Won't Load

marycordova
SplunkTrust
SplunkTrust

I've installed the Splunk Add-On Builder but the UI is blank/won't load...I've tried installing on my HF (Heavy Forwarder) and my DS (Deployment Server) (HF is under a lot of load) but still the problem persists.  

@marycordova
0 Karma
1 Solution

marycordova
SplunkTrust
SplunkTrust

I opened a support ticket, and they discovered that my Okta/SAML/SSO had a "role" (for my SH (search head)) that was not present on my DS or HF (it wasn't necessary).  However, my account was inheriting the "admin" role so IMO it shouldn't have mattered.  I added the "role" to my HF and DS and was able to proceed.  

But then...it happened again in another part of the UI.  I opened another support ticket and the advice was not to use Add-On Builder in a distributed environment...which didn't make sense, what would having a distributed environment have to do with it?  

What Add-On Builder does not like, I suspect, is basically any instance of Splunk with "roles" associated to accounts that are not the local/default admin and ONLY the local/default admin.

I deployed a stand-alone, local, Enterprise instance on my laptop NOT integrated with Okta/SAML/SSO and everything works fine...so that is the solution 😋

@marycordova

View solution in original post

0 Karma

marycordova
SplunkTrust
SplunkTrust

I opened a support ticket, and they discovered that my Okta/SAML/SSO had a "role" (for my SH (search head)) that was not present on my DS or HF (it wasn't necessary).  However, my account was inheriting the "admin" role so IMO it shouldn't have mattered.  I added the "role" to my HF and DS and was able to proceed.  

But then...it happened again in another part of the UI.  I opened another support ticket and the advice was not to use Add-On Builder in a distributed environment...which didn't make sense, what would having a distributed environment have to do with it?  

What Add-On Builder does not like, I suspect, is basically any instance of Splunk with "roles" associated to accounts that are not the local/default admin and ONLY the local/default admin.

I deployed a stand-alone, local, Enterprise instance on my laptop NOT integrated with Okta/SAML/SSO and everything works fine...so that is the solution 😋

@marycordova
0 Karma

livehybrid
SplunkTrust
SplunkTrust

Hi @marycordova 

When you navigate to the UI, try opening DevTools/Console (this depends per browser) and have a look at the console when you load the Add-on builder UI - are there any errors or 4xx/5xx errors in there? This might help point to why it isnt loading correctly.

Let us know if you see any errors and can try and help further.

Regards

Will

0 Karma

Shakira1
Explorer

I have the same issue

I installed it locally on Splunk local host, and the page "home" is empty 

 any idea?

Screenshot 2025-02-19 at 18.16.03.png

0 Karma

marycordova
SplunkTrust
SplunkTrust

Make sure you are using the local/default admin account and that there are no other roles associated with that account. 

@marycordova
0 Karma

Shakira1
Explorer

Yes.

this is my localhost so I use admin local user (the default one) and its have the max permission 

0 Karma
Career Survey
First 500 qualified respondents will receive a $20 gift card! Tell us about your professional Splunk journey.

Can’t make it to .conf25? Join us online!

Get Updates on the Splunk Community!

Leveraging Automated Threat Analysis Across the Splunk Ecosystem

Enhance Security Operations with Automated Threat Analysis in the Splunk EcosystemAre you leveraging ...

What Is Splunk? Here’s What You Can Do with Splunk

Hey Splunk Community, we know you know Splunk. You likely leverage its unparalleled ability to ingest, index, ...

Level Up Your .conf25: Splunk Arcade Comes to Boston

With .conf25 right around the corner in Boston, there’s a lot to look forward to — inspiring keynotes, ...