All Apps and Add-ons

Splunk AWS Addon In Federate (SAML) Environment

ennyp
New Member

I am trying to use the AWS Addon in a federated environment where we are authenticated into AWS via SSO. When I am trying to configure the AWS Addon (v4.6) I am being asked to provide Key ID and Secret Key. These are not available in this federated environment.

When reading through the documentation (https://docs.splunk.com/Documentation/AddOns/released/AWS/Setuptheadd-on) on configuring the add on it states (in the Discover an EC2 IAM role section) step 5: Look for the EC2 IAM role in the Autodiscovered IAM Role column. If you are in your own managed AWS environment and you have an EC2 IAM role configured, it appears in this account list automatically.

I am not seeing this. I am being asked for the Key ID and Secret Key.

Splunk Server is running in AWS EC2 with a role associated with the EC2 instance that has all appropriate policies applied to the role to access AWS resources.

Any guidance would be appreciated.

Thanks

Tags (1)
0 Karma
Get Updates on the Splunk Community!

Stay Connected: Your Guide to May Tech Talks, Office Hours, and Webinars!

Take a look below to explore our upcoming Community Office Hours, Tech Talks, and Webinars this month. This ...

They're back! Join the SplunkTrust and MVP at .conf24

With our highly anticipated annual conference, .conf, comes the fez-wearers you can trust! The SplunkTrust, as ...

Enterprise Security Content Update (ESCU) | New Releases

Last month, the Splunk Threat Research Team had two releases of new security content via the Enterprise ...