Hi. I am currently running Splunk Free. In order to provide some access control, it is proxied through Apache on the same server, with LDAP authentication. This was working perfectly until I updated to Splunk 6 this morning. Now I am unable to access Splunk, as it keeps prompting for credentials. I've even tried changing to file-based passwords, with the same issue.
Here is my Apache config:
ProxyPass / htp://localhost:8000/ retry=0 timeout=5
ProxyPassReverse / htp://localhost:8000/
[Location /]
AuthType Basic
AuthName "Splunk"
AuthBasicProvider ldap
AuthzLDAPAuthoritative On
AuthLDAPBindDN "cn=ldap-bind,ou=Service Accounts,...,dc=co,dc=uk"
AuthLDAPBindPassword "..."
AuthLDAPUrl "ldap://10.10.10.10:389/ou=...,dc=co,dc=uk?sAMAccountName?sub?(objectClass=user)" NONE
AuthLDAPGroupAttributeIsDN on
Require ldap-group CN=G.ADM.Logging,OU=Admin,...DC=co,DC=uk
[/Location]
Has anyone else experienced this issue? If I disable authentication it proxies fine again.
(Note, the typos above are because I can't post otherwise.)
Thanks.
... View more