Security

Insecure login issue in new splunk setup

strive
Influencer

Hi,

In our system, we are always getting insecure login error. Our system is on RHEL 5.x. When I reboot the Search Head node, the 8000 port will be assigned and SH starts normally. Now when I try to login to the system, I get insecure login pop-up message in Firefox and IE. When i check the SH and try to stop and restart splunk on SH node, i get message 8000 port is not available.

Is there any settings that should be enabled on SH node to avoid the insecure login issue.

Thanks

Strive

Tags (1)
0 Karma

matt
Splunk Employee
Splunk Employee

enable_insecure_login is a setting that was added to allow a dashboard to be rendered in something other than Splunk. Are you doing that in your enviormnent? If not you probably want to disable the setting since it allows credentials to be passed in the clear (hence calling it insecure login). With that said I do not believe that setting is related to your setting. What version of Splunk are you running? Do you have update checking turned on? If you inspect the page in Firebug (or something similar) to do you see an insecure elements in the HTML?

0 Karma

strive
Influencer

Our web.conf has enable_insecure_login set to true.

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Think Like an Architect: Introducing the Splunk Certified Cybersecurity Defense ...

In cybersecurity, defenders respond to threats. Architects design the systems that stop them.    As ...

Index This | What has goals but no motivation?

June 2026 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...

Deep Dive: Accelerate threat investigation with Splunk’s AI Assistant in Security

AI is one of the biggest topics in the market today, and for security teams, its value goes far beyond the ...