Splunk Cloud Platform

Saml response does not contain group information (Okta)

Lien
Explorer

I am using Okta to configure SAML for splunk.

Following the step of introduction, I created a SAML group in Splunk and same group name in Okta. Made a role mapping. 

https://saml-doc.okta.com/SAML_Docs/How-to-Configure-SAML-2.0-for-Splunk-Cloud.html

When finished the setup, the logon page is through Okta but it got below error message after filled in user email and password in Okta logon page.

Saml response does not contain group information.

Attached the output of saml-tracer addon. 

Did I miss something?

 

 

 

Labels (1)
Tags (1)
0 Karma

Lien
Explorer

Hi @livehybrid , 

Thank you for your reply. I only created one group. I am using Splunk cloud trial version. Is there any limitation for setting up SSO?

Also another problem is once it shows that error page, I could not logon with local user anymore. It redirect to Okta when I access. Then I lost opportunity to logon Splunk Cloud.

0 Karma

sainag_splunk
Splunk Employee
Splunk Employee

@Lien unfortunately, its not supported for the splunkcloud trial version.

https://docs.splunk.com/Documentation/SplunkCloud/latest/Admin/TypesofSplunkClouddeployment

 

 

 

If this Helps, Please Upvote!

livehybrid
Super Champion

Hi @Lien 

I assume your user has been assigned to a relevant group in Okta that is relevant to the Splunk application? 

I have seen an issue before with users who having 100+ groups where the SAML response doesnt send the groups, I wonder if that could be the case here - does your user have a high count of groups in Okta?

I dont know if you have seen this but it may be useful? https://splunk.my.site.com/customer/s/article/SAML-user-unable-to-login

🌟 Did this answer help you? If so, please consider:

  • Adding karma to show it was useful
  • Marking it as the solution if it resolved your issue
  • Commenting if you need any clarification

Your feedback encourages the volunteers in this community to continue contributing

Get Updates on the Splunk Community!

Splunk Observability Cloud's AI Assistant in Action Series: Auditing Compliance and ...

This is the third post in the Splunk Observability Cloud’s AI Assistant in Action series that digs into how to ...

Splunk Community Badges!

  Hey everyone! Ready to earn some serious bragging rights in the community? Along with our existing badges ...

What You Read The Most: Splunk Lantern’s Most Popular Articles!

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...