<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Splunk with SAML authentication in Security</title>
    <link>https://community.splunk.com/t5/Security/Splunk-with-SAML-authentication/m-p/369037#M9160</link>
    <description>&lt;P&gt;It's in your splunk SP metadata:&lt;BR /&gt;
&lt;A href="https://yoursplunk.yourfqdn.ca:8000/saml/spmetadata"&gt;https://yoursplunk.yourfqdn.ca:8000/saml/spmetadata&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;Look for the following tag:&lt;/P&gt;

&lt;PRE&gt;&lt;CODE&gt;&amp;lt;md:AssertionConsumerService  Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST"  Location="https://yoursplunk.yourdomain.ca/saml/acs"  index="0"&amp;gt;
&lt;/CODE&gt;&lt;/PRE&gt;</description>
    <pubDate>Tue, 09 May 2017 15:33:33 GMT</pubDate>
    <dc:creator>suarezry</dc:creator>
    <dc:date>2017-05-09T15:33:33Z</dc:date>
    <item>
      <title>Splunk with SAML authentication</title>
      <link>https://community.splunk.com/t5/Security/Splunk-with-SAML-authentication/m-p/369036#M9159</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;

&lt;P&gt;I am configuring Splunk access control with SAML onelogin and I have uploaded the onelogin IdP meta data file to splunk. After configuration splunk app is redirecting to onelogin login page. But getting a message like &lt;/P&gt;

&lt;P&gt;"Federation Exception: Missing Assertion Consumer Service URL. Please contact your administrator." &lt;BR /&gt;
Does any one know how do i get Consumer URL for splunk ?&lt;/P&gt;

&lt;P&gt;-thanks&lt;/P&gt;</description>
      <pubDate>Tue, 09 May 2017 05:17:18 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/Splunk-with-SAML-authentication/m-p/369036#M9159</guid>
      <dc:creator>splunkgk</dc:creator>
      <dc:date>2017-05-09T05:17:18Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk with SAML authentication</title>
      <link>https://community.splunk.com/t5/Security/Splunk-with-SAML-authentication/m-p/369037#M9160</link>
      <description>&lt;P&gt;It's in your splunk SP metadata:&lt;BR /&gt;
&lt;A href="https://yoursplunk.yourfqdn.ca:8000/saml/spmetadata"&gt;https://yoursplunk.yourfqdn.ca:8000/saml/spmetadata&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;Look for the following tag:&lt;/P&gt;

&lt;PRE&gt;&lt;CODE&gt;&amp;lt;md:AssertionConsumerService  Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST"  Location="https://yoursplunk.yourdomain.ca/saml/acs"  index="0"&amp;gt;
&lt;/CODE&gt;&lt;/PRE&gt;</description>
      <pubDate>Tue, 09 May 2017 15:33:33 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/Splunk-with-SAML-authentication/m-p/369037#M9160</guid>
      <dc:creator>suarezry</dc:creator>
      <dc:date>2017-05-09T15:33:33Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk with SAML authentication</title>
      <link>https://community.splunk.com/t5/Security/Splunk-with-SAML-authentication/m-p/523961#M11876</link>
      <description>&lt;P&gt;Is the AuthNRequest signed? For some reason, Splunk does not include the ACS URL in unsigned assertions.&lt;/P&gt;&lt;P&gt;In&amp;nbsp;your authentication.conf file, set the following attribute:&lt;/P&gt;&lt;PRE&gt;[&amp;lt;saml-authSettings-key&amp;gt;]&lt;BR /&gt;signAuthnRequest = true&lt;/PRE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 09 Oct 2020 17:35:01 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/Splunk-with-SAML-authentication/m-p/523961#M11876</guid>
      <dc:creator>aaron_gibby</dc:creator>
      <dc:date>2020-10-09T17:35:01Z</dc:date>
    </item>
  </channel>
</rss>

