Splunk Search

IDP failed to authenticate request - No Status Code?

hsuparta
New Member

We are currently facing Single Sign-On issues - getting the following error.

IDP failed to authneticate request. Status Code="" Check splunkd.log for more information about the failure.

Unlike other posts - there is no status code in our error and the splunkd.log doesn't give much information.

We have logged in locally and downloaded the metadata.xml file, we confirmed that the configuration is still same as the ADFS Relaying Party Trust.

Hopefully someone can assist - thanks!

Tags (1)
0 Karma

DavidHourani
Super Champion

Hi @hsuparta,

Could you provide us with more details :
-Which Splunk version are you using ?
-Include the steps you followed for configuration.
-Include an extract of the authentication.conf file.

0 Karma

hsuparta
New Member
0 Karma

DavidHourani
Super Champion

You can access the file via a REST call :

https://<host>:<mPort>/services/configs/conf-{file}

More details here :
https://docs.splunk.com/Documentation/Splunk/8.0.0/RESTREF/RESTconf

To access the file directly you will need to contact support.

0 Karma
Get Updates on the Splunk Community!

Detecting Remote Code Executions With the Splunk Threat Research Team

REGISTER NOWRemote code execution (RCE) vulnerabilities pose a significant risk to organizations. If ...

Observability | Use Synthetic Monitoring for Website Metadata Verification

If you are on Splunk Observability Cloud, you may already have Synthetic Monitoringin your observability ...

More Ways To Control Your Costs With Archived Metrics | Register for Tech Talk

Tuesday, May 14, 2024  |  11AM PT / 2PM ET Register to Attend Join us for this Tech Talk and learn how to ...