Security

Does Splunk support Microsoft Azure AD B2C?

evinasco
Communicator

Hi Splunkers

I need to know if splunk supports Azure AD B2C to allow anyone to sign up as a user in a service with their email or social media provider like hotmail, i have used the next links for do that and i can login with domian account but i don't get to login with hotmail account

https://www.splunk.com/blog/2017/11/20/configuring-microsoft-s-azure-security-assertion-markup-langu...

https://www.splunk.com/blog/2016/09/14/configuring-microsofts-adfs-splunk-cloud.html

https://www.splunk.com/blog/2017/11/20/configuring-microsoft-s-azure-security-assertion-markup-langu...

Some idea???

Tags (3)
0 Karma

kristensens
Engager

Long time quiet thread, but I recently got it working with the help of a set of excellent scripts :
Follow these steps
https://github.com/cljung/AzureAD-B2C-scripts

Then we need to get the groups for splunk, which is implemented with a function described in this;
https://github.com/cljung/B2C-devdiv/tree/main/4-groups

I all is working, you'll have the testsite jwt.ms up and displaying claims.
Then theres a bit of work to convert JWT to SAML, which is described here

https://docs.microsoft.com/en-us/azure/active-directory-b2c/connect-with-saml-service-providers?tabs...

In addition, there may be some smal tweaks in the policy to get the right claims.

I also noted that the metadata endpoint of splunk isnt available unless you sign on, so I uploaded it to av azure blob website and referenced in the app-registration..

 

brgds

Kristen

Tags (2)
0 Karma
Get Updates on the Splunk Community!

Webinar Recap | Revolutionizing IT Operations: The Transformative Power of AI and ML ...

The Transformative Power of AI and ML in Enhancing Observability   In the realm of IT operations, the ...

.conf24 | Registration Open!

Hello, hello! I come bearing good news: Registration for .conf24 is now open!   conf is Splunk’s rad annual ...

ICYMI - Check out the latest releases of Splunk Edge Processor

Splunk is pleased to announce the latest enhancements to Splunk Edge Processor.  HEC Receiver authorization ...