<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Splunk sends hostname in SAML Request in Splunk Enterprise</title>
    <link>https://community.splunk.com/t5/Splunk-Enterprise/Splunk-sends-hostname-in-SAML-Request/m-p/763017#M24535</link>
    <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/170906"&gt;@livehybrid&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;&lt;P&gt;thank you very much&amp;nbsp; that worked.&amp;nbsp;&lt;/P&gt;&lt;P&gt;In my configuration this value was&amp;nbsp; the url&amp;nbsp; to the metatada of the IDP before.&lt;/P&gt;&lt;P&gt;Cheers,&lt;BR /&gt;Ben&lt;/P&gt;</description>
    <pubDate>Thu, 20 Aug 2026 06:36:39 GMT</pubDate>
    <dc:creator>benkummer</dc:creator>
    <dc:date>2026-08-20T06:36:39Z</dc:date>
    <item>
      <title>Splunk sends hostname in SAML Request</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise/Splunk-sends-hostname-in-SAML-Request/m-p/762997#M24528</link>
      <description>&lt;P&gt;We are configuring SAML Authentication in splunk.&lt;/P&gt;&lt;P&gt;We set up everything but splunk sends an SAMLRequest starting with trailing number because the hostname of the system is&amp;nbsp; 1ourhostname.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;lt;?xml version="1.0" encoding="UTF-8"?&amp;gt;&lt;BR /&gt;&amp;lt;samlp:AuthnRequest ID="1ourhostname..1.6E4A85A3-6AC1-4CC3-A9&amp;nbsp;&lt;/P&gt;&lt;P&gt;The id Provider rejects the request because an id starting with numbers is incorrect.&lt;/P&gt;&lt;P&gt;What i tried set fqdn to&amp;nbsp; the web url&amp;nbsp; in both server.conf general&amp;nbsp; and in the saml secttion in authentication.conf . That does not change the saml request. Any ideas?&lt;/P&gt;&lt;P&gt;authentication.conf:&amp;nbsp;&lt;/P&gt;&lt;PRE&gt;[saml]

fqdn = splunk-test.system.local&lt;/PRE&gt;&lt;P&gt;server.conf:&amp;nbsp;&lt;/P&gt;&lt;PRE&gt;[general]
serverName=splunk-test.system.local
fqdn = splunk-test.system.local&lt;/PRE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 19 Aug 2026 14:47:07 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise/Splunk-sends-hostname-in-SAML-Request/m-p/762997#M24528</guid>
      <dc:creator>benkummer</dc:creator>
      <dc:date>2026-08-19T14:47:07Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk sends hostname in SAML Request</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise/Splunk-sends-hostname-in-SAML-Request/m-p/763003#M24529</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/128674"&gt;@benkummer&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I would try and set the entityId value in the saml configuration of authentication.conf (see&amp;nbsp;&lt;A href="https://help.splunk.com/en/splunk-enterprise/administer/admin-manual/10.4/configuration-file-reference/10.4.0-configuration-file-reference/authentication.conf#:~:text=changeme%0AattributeQuerySoapUsername%20%3D%20test-,entityId,-%3D%20test%2Dsplunk%0AidpAttributeQueryUrl" target="_blank"&gt;https://help.splunk.com/en/splunk-enterprise/administer/admin-manual/10.4/configuration-file-reference/10.4.0-configuration-file-reference/authentication.conf#:~:text=changeme%0AattributeQuerySoapUsername%20%3D%20test-,entityId,-%3D%20test%2Dsplunk%0AidpAttributeQueryUrl&lt;/A&gt;)&lt;/P&gt;&lt;LI-CODE lang="markup"&gt;[samlv2]
entityId = yourServerNameWithoutNumericalPrefix&lt;/LI-CODE&gt;&lt;P&gt;&lt;span class="lia-unicode-emoji" title=":glowing_star:"&gt;🌟&lt;/span&gt; &lt;STRONG&gt;Did this answer help you? If so, please consider&lt;/STRONG&gt;:&lt;/P&gt;&lt;UL&gt;&lt;UL&gt;&lt;LI&gt;Adding karma to show it was useful&lt;/LI&gt;&lt;/UL&gt;&lt;/UL&gt;&lt;UL&gt;&lt;UL&gt;&lt;LI&gt;Marking it as the solution if it resolved your issue&lt;/LI&gt;&lt;/UL&gt;&lt;/UL&gt;&lt;UL&gt;&lt;UL&gt;&lt;LI&gt;Commenting if you need any clarification&lt;/LI&gt;&lt;/UL&gt;&lt;/UL&gt;&lt;P&gt;Your feedback encourages the volunteers in this community to continue contributing.&lt;/P&gt;</description>
      <pubDate>Wed, 19 Aug 2026 18:33:53 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise/Splunk-sends-hostname-in-SAML-Request/m-p/763003#M24529</guid>
      <dc:creator>livehybrid</dc:creator>
      <dc:date>2026-08-19T18:33:53Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk sends hostname in SAML Request</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise/Splunk-sends-hostname-in-SAML-Request/m-p/763017#M24535</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/170906"&gt;@livehybrid&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;&lt;P&gt;thank you very much&amp;nbsp; that worked.&amp;nbsp;&lt;/P&gt;&lt;P&gt;In my configuration this value was&amp;nbsp; the url&amp;nbsp; to the metatada of the IDP before.&lt;/P&gt;&lt;P&gt;Cheers,&lt;BR /&gt;Ben&lt;/P&gt;</description>
      <pubDate>Thu, 20 Aug 2026 06:36:39 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise/Splunk-sends-hostname-in-SAML-Request/m-p/763017#M24535</guid>
      <dc:creator>benkummer</dc:creator>
      <dc:date>2026-08-20T06:36:39Z</dc:date>
    </item>
  </channel>
</rss>

