Getting Data In

Splunk Add-on for Okta Identity Cloud- A bug?

esbse
New Member

I can across a bug for this app: https://splunkbase.splunk.com/app/6553/ and though I'd share.

The log types logs and users work fine. But with apps and groups it's configure to get "enrichment data", this fails if you need to use a proxy.

After a bit of trouble shooting I found the on line 243 in okta_utils.py there is no proxy in the request call. I updated it to the following and it works:

 

Before:

r = requests.request("GET", url, headers=headers)

After:

r = requests.request("GET", url, headers=headers,proxies=proxies,timeout=reqTimeout)

 

I also had to add these lines to grab those settings, I added them just before the if statement:

# Get Proxy settings
proxies = get_proxy_settings(self.session_key, self.logger)
# set RequestTimeout to 90sec
reqTimeout = float(90)

Labels (1)
Tags (1)
0 Karma
Get Updates on the Splunk Community!

Splunk MCP & Agentic AI: Machine Data Without Limits

  Discover how the Splunk Model Context Protocol (MCP) Server can revolutionize the way your organization ...

Finding Based Detections General Availability

Overview  We’ve come a long way, folks, but here in Enterprise Security 8.4 I’m happy to announce Finding ...

Get Your Hands Dirty (and Your Shoes Comfy): The Splunk Experience

Hands-On Learning and Technical Seminars  Sometimes, you just need to see the code. For those looking for a ...