Other Usage

No valid Splunk role found in local mapping - Microsoft Azure Entra SSO

JRacca
Explorer

Hi,

We are integrating the Splunk to our Microsoft Azure SSO, and followed instructions from https://learn.microsoft.com/en-us/entra/identity/saas-apps/splunkenterpriseandsplunkcloud-tutorial#c...

But after all the configuration, we are hitting the "No valid Splunk role found in local mapping"

 

Also checked Configure SSO with Microsoft Azure AD or AD FS as your Identity Provider - Splunk Documentation to remove the alias but was not able to make it work.

0 Karma
1 Solution

richgalloway
SplunkTrust
SplunkTrust

The docs say to use the group ID or UUID.  I have little experience with Azure so I can't help much there.

---
If this reply helps you, Karma would be appreciated.

View solution in original post

richgalloway
SplunkTrust
SplunkTrust

Did you continue to the next step "Map SAML groups to Splunk Enterprise roles "?

---
If this reply helps you, Karma would be appreciated.

JRacca
Explorer

Yes I did and put in the Object ID of the Application created on Azure as the Group Name.
I'm trying to figure out how is it not working.

Did I put the correct Object ID?

0 Karma

richgalloway
SplunkTrust
SplunkTrust

The docs say to use the group ID or UUID.  I have little experience with Azure so I can't help much there.

---
If this reply helps you, Karma would be appreciated.

JRacca
Explorer

Hi!

Thank you! UUID did not work but Group ID did 🙂
This was my mis-out thank you

Career Survey
First 500 qualified respondents will receive a $20 gift card! Tell us about your professional Splunk journey.
Get Updates on the Splunk Community!

Beyond Detection: How Splunk and Cisco Integrated Security Platforms Transform ...

Financial services organizations face an impossible equation: maintain 99.9% uptime for mission-critical ...

Customer success is front and center at .conf25

Hi Splunkers, If you are not able to be at .conf25 in person, you can still learn about all the latest news ...

.conf25 Global Broadcast: Don’t Miss a Moment

Hello Splunkers, .conf25 is only a click away.  Not able to make it to .conf25 in person? No worries, you can ...