<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: SAML SSO w/Okta - &amp;quot;...response does not contain group information&amp;quot; in Security</title>
    <link>https://community.splunk.com/t5/Security/SAML-SSO-w-Okta-quot-response-does-not-contain-group-information/m-p/441774#M10339</link>
    <description>&lt;P&gt;Did you create corresponding &lt;CODE&gt;authentication.conf&lt;/CODE&gt; file?&lt;/P&gt;</description>
    <pubDate>Wed, 26 Dec 2018 03:58:31 GMT</pubDate>
    <dc:creator>p_gurav</dc:creator>
    <dc:date>2018-12-26T03:58:31Z</dc:date>
    <item>
      <title>SAML SSO w/Okta - "...response does not contain group information"</title>
      <link>https://community.splunk.com/t5/Security/SAML-SSO-w-Okta-quot-response-does-not-contain-group-information/m-p/441773#M10338</link>
      <description>&lt;P&gt;Hi there, I've just followed the documentation/Splunk guide to set up Okta SSO with SAML, however when clicking on the Splunk link in Okta it shows the login animation as if normal and then lands on the Splunk web page page titled Account Status, with the message "Saml response does not contain group information". &lt;BR /&gt;
I've set up groups in the SAML settings of my Splunk instance and also tried defining the "role" value in the Okta setup page for the app however still no luck.&lt;/P&gt;

&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Thu, 20 Dec 2018 00:48:19 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/SAML-SSO-w-Okta-quot-response-does-not-contain-group-information/m-p/441773#M10338</guid>
      <dc:creator>danharvey</dc:creator>
      <dc:date>2018-12-20T00:48:19Z</dc:date>
    </item>
    <item>
      <title>Re: SAML SSO w/Okta - "...response does not contain group information"</title>
      <link>https://community.splunk.com/t5/Security/SAML-SSO-w-Okta-quot-response-does-not-contain-group-information/m-p/441774#M10339</link>
      <description>&lt;P&gt;Did you create corresponding &lt;CODE&gt;authentication.conf&lt;/CODE&gt; file?&lt;/P&gt;</description>
      <pubDate>Wed, 26 Dec 2018 03:58:31 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/SAML-SSO-w-Okta-quot-response-does-not-contain-group-information/m-p/441774#M10339</guid>
      <dc:creator>p_gurav</dc:creator>
      <dc:date>2018-12-26T03:58:31Z</dc:date>
    </item>
    <item>
      <title>Re: SAML SSO w/Okta - "...response does not contain group information"</title>
      <link>https://community.splunk.com/t5/Security/SAML-SSO-w-Okta-quot-response-does-not-contain-group-information/m-p/441775#M10340</link>
      <description>&lt;P&gt;So I managed to fix my own issue after some good tips from user jahshuah in the splunk group on slack. Basically I was using the "Splunk Enterprise" app for Okta, which does not allow you to set group information. I had to go to "Create app" in okta and create a generic SAML 2.0 app. &lt;BR /&gt;
After doing this and then following the usual setup procedures, I finally had the group attribute statements field, which I set up with the name "role" and matches regex ".*"&lt;BR /&gt;
Finally I just went into the SAML settings in splunk, added a group with the same name as the okta group my users are in and what a Christmas miracle, it works.&lt;BR /&gt;
Hopefully that helps someone in future.&lt;BR /&gt;
Cheers&lt;/P&gt;</description>
      <pubDate>Thu, 27 Dec 2018 07:59:53 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/SAML-SSO-w-Okta-quot-response-does-not-contain-group-information/m-p/441775#M10340</guid>
      <dc:creator>danharvey</dc:creator>
      <dc:date>2018-12-27T07:59:53Z</dc:date>
    </item>
    <item>
      <title>Re: SAML SSO w/Okta - "...response does not contain group information"</title>
      <link>https://community.splunk.com/t5/Security/SAML-SSO-w-Okta-quot-response-does-not-contain-group-information/m-p/441776#M10341</link>
      <description>&lt;P&gt;No unfortunately I do not have access to the backend of our splunk instances at the moment, however I was able to fix the group information error and I didn't need to touch the auth file. I'll post it as an answer for future reference if anyone has the same issue. Cheers though&lt;/P&gt;</description>
      <pubDate>Thu, 27 Dec 2018 08:00:40 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/SAML-SSO-w-Okta-quot-response-does-not-contain-group-information/m-p/441776#M10341</guid>
      <dc:creator>danharvey</dc:creator>
      <dc:date>2018-12-27T08:00:40Z</dc:date>
    </item>
    <item>
      <title>Re: SAML SSO w/Okta - "...response does not contain group information"</title>
      <link>https://community.splunk.com/t5/Security/SAML-SSO-w-Okta-quot-response-does-not-contain-group-information/m-p/441777#M10342</link>
      <description>&lt;P&gt;@danharvey If your problem is resolved, please accept the answer to help future readers.&lt;/P&gt;</description>
      <pubDate>Thu, 27 Dec 2018 13:55:00 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/SAML-SSO-w-Okta-quot-response-does-not-contain-group-information/m-p/441777#M10342</guid>
      <dc:creator>richgalloway</dc:creator>
      <dc:date>2018-12-27T13:55:00Z</dc:date>
    </item>
  </channel>
</rss>

