Security

Splunk Single Sign-on permissive mode doesn't work correctly in Splunk 9.0.1?

jrodman2
Engager

When configured to permissive mode, UI requests hitting the Splunk UI without the REMOTE_USER header are directed to a go-away page, saying not authorized.  This behavior is correct for strict mode, but not for permissive mode.

This is kinda unfortunate for any use case where you want SSO to enable certain kinds of automatic access but stlil enable users to log in the old fashioned way.

 

My use case is automated UI testing, which is obviously a minority, but will affect all splunk app developers.  

Labels (3)
0 Karma

richgalloway
SplunkTrust
SplunkTrust

Have you submitted a Support Request?

---
If this reply helps you, Karma would be appreciated.

jrodman2
Engager

No, I haven't put in the time to figure out how I can access support, and I don't expect anyone to fix it anyway.  I was just documenting the state of the world, essentially.

0 Karma
Career Survey
First 500 qualified respondents will receive a $20 gift card! Tell us about your professional Splunk journey.
Get Updates on the Splunk Community!

Tech Talk Recap | Mastering Threat Hunting

Mastering Threat HuntingDive into the world of threat hunting, exploring the key differences between ...

Observability for AI Applications: Troubleshooting Latency

If you’re working with proprietary company data, you’re probably going to have a locally hosted LLM or many ...

Splunk AI Assistant for SPL vs. ChatGPT: Which One is Better?

In the age of AI, every tool promises to make our lives easier. From summarizing content to writing code, ...