All Apps and Add-ons

Okta Identity Cloud Add-on for Splunk: Configurations tab not loading

cdahal
Explorer

I recently requested install of Okta Identity Cloud Add-on for Splunk in Splunk cloud.
Are there anymore setup we have to do so the configurations tab on Okta Identity Cloud Add-on for Splunk works?
It keeps spinning and never get loaded.

https://splunkbase.splunk.com/app/3682/

0 Karma

cdahal
Explorer

Hello ivanreis - Thanks for responding to my question. I have the correct version of cloud instance.

It appears that the functionality was expected by design. They do not permit inputs to be configured on Core or Premium App Search Head's within Splunk Cloud systems. We need to either use heavy forwarder for inputs or IDM added to splunk cloud instance.

ivanreis
Builder

it is correct, the most of add-on have to be deployed at HF and in some cases to the indexers as well. thanks for the feedback.

0 Karma

starks951
Explorer

How did you know if you were running the Core or Premium search heads in Splunk Cloud... I am seeing the same issue as described...

0 Karma

ivanreis
Builder

Which Splunk version you are running to? Did you check the app compatibility version?
these are the version this app support: Splunk Versions: 7.2, 7.1, 7.0, 6.6, 6.5, 6.4, 6.3

run a search on internal index to find errors
index=_internal sourcetype = ta_okta_identity_cloud_for_splunk_okta_identity_cloud* tag=error
OR
index=_internal ERROR (pid="") (metric="") | table pid,_time,_raw | sort -_time

OR there is other option to get the log files from cli
Check errors at /opt/splunk/var/log/splunk/ta_okta_identity_cloud_for_splunk_okta_identity_cloud.log, this is the log for this app.

also check for errors on /opt/splunk/var/log/splunk/splunkd.log

I suggest to remove the app, restart Splunk service and reinstall the app again.
I deployed this app on Splunk Enterprise Version: 7.2.5.1 at Linux and Version:
7.3.2 at Macbook and no issues with spinning

0 Karma
Get Updates on the Splunk Community!

Index This | I am a number, but when you add ‘G’ to me, I go away. What number am I?

March 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...

What’s New in Splunk App for PCI Compliance 5.3.1?

The Splunk App for PCI Compliance allows customers to extend the power of their existing Splunk solution with ...

Extending Observability Content to Splunk Cloud

Register to join us !   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to ...