Installation

Can SSO with Okta be setup without SSL?

eric_landry
Engager

I am setting up Okta SSO in our Splunk Enterprise 6.5.0 installation. This is my first SSO integration and just want to make sure of the requirement.

suarezry
Builder

SAML assertions can be signed and/or encrypted, or neither.
http://stackoverflow.com/questions/8276233/is-it-recommended-to-sign-and-encrypt-saml-and-use-ssl

I do not encrypt the assertions between my IdP and splunk, nor do I see a requirement to do so. However splunk will only accept signed assertions:

authentication.conf

signedAssertion = [true|false]
* OPTIONAL
* This tells Splunk if the SAML assertion has been signed by the IDP
* If set to false, Splunk will not verify the signature of the assertion
  using the certificate of the IDP.
* Currently, we accept only signed assertions.
0 Karma
Get Updates on the Splunk Community!

Join Us for Splunk University and Get Your Bootcamp Game On!

If you know, you know! Splunk University is the vibe this summer so register today for bootcamps galore ...

.conf24 | Learning Tracks for Security, Observability, Platform, and Developers!

.conf24 is taking place at The Venetian in Las Vegas from June 11 - 14. Continue reading to learn about the ...

Announcing Scheduled Export GA for Dashboard Studio

We're excited to announce the general availability of Scheduled Export for Dashboard Studio. Starting in ...