Security

SSO on OKTA using SAML error message: "**Saml response does not contain group information**"

Abk
New Member

Hi at all,

I have the following problem:
We configured SSO with OKTA using SAML. When authenticating we receive from Splunk the following error message "Saml response does not contain group information".

0 Karma

mydog8it
Builder

That message means there is no group information in the assertion that matches with the configuration in Splunk. Do you know how to capture the SAML assertion using something like Chrome developer tools? If so, use https://www.samltool.com/decode.php to look at the SAML information and see what groups are being sent to Splunk. Make adjustments to either Splunk or user groups on IDP side to correct the issue.

0 Karma
Get Updates on the Splunk Community!

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI!Discover how Splunk’s agentic AI ...

Splunk Enterprise Security 8.x: The Essential Upgrade for Threat Detection, ...

Watch On Demand the Tech Talk on November 6 at 11AM PT, and empower your SOC to reach new heights! Duration: ...

Splunk Observability as Code: From Zero to Dashboard

For the details on what Self-Service Observability and Observability as Code is, we have some awesome content ...