All Apps and Add-ons

website mointoring

riqbal47010
Path Finder

Hi
we have two types of web portals. Internal and external. Internal are only for our employees and exteranals are for specific people to access from remote location.

In the status Overview Page,
for Internal Portal, the reponse is 401.

and for External Portal the response is "502"

alt text

from _internal logs:
index=_internal sourcetype="web_availability_modular_input" auth_type
alt text

Please support.

Tags (1)
0 Karma

arjunpkishore5
Motivator

For the external, make sure a firewall is not blocking connections. Typically, you would use a proxy to connect to external websites from within an organization

For internal, ensure you have the right authorization headers. Typically organizations have LDAP or SAML authentication set up. This might be blocking your requests since the system is unable to authorize you.

Since I have no idea how your systems are setup, not sure if I can help beyond the above guesses.

0 Karma

riqbal47010
Path Finder

HI
thanks for your response.

when I put the full URL for external the response goes green with code=20

we are using LDAP authentication and I am pretty sure that it is the basic cause for blocking the request. can you please share the step for LDAP authorization. .
I used curl command with proxy and user credentaill but still using the error code 401

0 Karma

arjunpkishore5
Motivator

You'll have to check with the LDAP admin on the type of authentication headers needed. With curl, you can try some of the available methods to figure out - https://ec.haxx.se/http-auth.html

0 Karma

riqbal47010
Path Finder

sorry I lost in between.

As per AD admin we are using kerberos authentication whereas I link the available authentication methods are digest,negotiate and ntlm.

beside this how can we fix this issue from app side.

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Agentic SOC Triage: Investigating Splunk ES Notables with MCP Server and a Local LLM

The Problem: Too Many Alerts, Too Little Context Security operations teams running Splunk Enterprise Security ...

All Work and No Play? Not at .conf26! Unwind at These Evening Events

Between hands-on technical sessions, keynote reveals, and diving into live architectures, .conf26 is packed ...

Join the Hackathon at .conf26 and build a No-Code AI agent

Join us for the AI Agent Buildathon, an in-person, three-hour hands-on Hackathon where you’ll use Splunk Agent ...