Other Usage

No valid Splunk role found in local mapping - OneLogin

munozj
Observer

Setting up a new deployment with OneLogin SSO.  When attempting to login using SAML, getting this error message

"No valid Splunk role found in local mapping."

In OneLogin I setup the parameter "role" to pass User Roles  (also tried MemberOf)

In Splunk I created a SAML Group called sysadmin and assigned the role admin to it.

SAML-Tracer is verifying that the 'role' attribute is being passed and the value "SysAdmin" exist in the roles assigned to the user.

 

Screenshot 2025-09-02 at 2.55.18 PM.pngScreenshot 2025-09-02 at 2.54.29 PM.pngScreenshot 2025-09-02 at 2.53.25 PM.png

 

0 Karma

livehybrid
SplunkTrust
SplunkTrust

Hi @munozj 

It looks from your SAML response that the role name returned is "(Manual) Role: SysAdmin" note "sysadmin" as in your role mapping. 

Splunk does support semicolon delimited roles (https://help.splunk.com/en/splunk-enterprise/administer/manage-users-and-security/9.3/perform-advanc...) but will use the role name as its sent, which in this case includes the extra string "(Manual) Role: " I believe.

🌟 Did this answer help you? If so, please consider:

  • Adding karma to show it was useful
  • Marking it as the solution if it resolved your issue
  • Commenting if you need any clarification

Your feedback encourages the volunteers in this community to continue contributing

0 Karma
Career Survey
First 500 qualified respondents will receive a $20 gift card! Tell us about your professional Splunk journey.
Get Updates on the Splunk Community!

Tech Talk Recap | Mastering Threat Hunting

Mastering Threat HuntingDive into the world of threat hunting, exploring the key differences between ...

Observability for AI Applications: Troubleshooting Latency

If you’re working with proprietary company data, you’re probably going to have a locally hosted LLM or many ...

Splunk AI Assistant for SPL vs. ChatGPT: Which One is Better?

In the age of AI, every tool promises to make our lives easier. From summarizing content to writing code, ...