Splunk Enterprise

splunk SSO configuration

martinnepolean
Explorer

We are working to integrate splunk with IDAM for SSO. WE have three splunk search head cluster for three set of users  groups. On checking the splunk metadata file, IDAM engineer is telling that all three environments has same entity ID and we need to change it to differentiate between the clusters. Please let me know how to do it.

0 Karma

dmacintosh_splu
Splunk Employee
Splunk Employee

The documentation covers a number of vendors specifically, please refer to one if it matches your vendor. If not, generally you will find it in the authentication.conf file used in this configuration. entityId is a parameter avaialble and should be the same among members of the same SHC to use smooth single logout. Each SHC entityId used is the change you asked about. 

https://docs.splunk.com/Documentation/Splunk/8.0.6/Security/ConfigureSAMLSSO#Configure_SSO_using_SAM...

0 Karma

martinnepolean
Explorer

Thanks for the reply but this link doesn't give any information about changing the entityid of the splunk

0 Karma

inventsekar
SplunkTrust
SplunkTrust

Hi @martinnepolean 

this blog is about okta saml, but, it got some info about the entityID.. pls check it.. thanks.

https://www.splunk.com/en_us/blog/cloud/configuring-okta-saml-single-sign-on-with-splunk-cloud-using...

 

thanks and best regards,
Sekar

PS - If this or any post helped you in any way, pls consider upvoting, thanks for reading !
0 Karma

martinnepolean
Explorer

@inventsekar This link doesn't have any information for changing entityID of the splunk

0 Karma
Get Updates on the Splunk Community!

Unlock Database Monitoring with Splunk Observability Cloud

  In today’s fast-paced digital landscape, even minor database slowdowns can disrupt user experiences and ...

Purpose in Action: How Splunk Is Helping Power an Inclusive Future for All

At Cisco, purpose isn’t a tagline—it’s a commitment. Cisco’s FY25 Purpose Report outlines how the company is ...

[Upcoming Webinar] Demo Day: Transforming IT Operations with Splunk

Join us for a live Demo Day at the Cisco Store on January 21st 10:00am - 11:00am PST In the fast-paced world ...