Enable SCIM Provisioning for Splunk Cloud in Okta
Last Updated:
Overview
The Splunk Cloud application in the Okta Integration Network (OIN) does not support System for Cross-domain Identity Management (SCIM) provisioning. This occurs because the predefined application only supports SAML and on-premises provisioning. Resolve this issue by creating a custom SCIM application in Okta to enable SCIM provisioning for Splunk Cloud.
Applies To
- Okta Identity Engine (OIE)
- Okta Classic Engine
- Splunk Cloud
- Okta Integration Network (OIN)
- Provisioning
- System for Cross-domain Identity Management (SCIM)
Cause
The predefined Splunk Cloud application found in the OIN catalog currently only supports SAML and on-premises provisioning. It does not support SCIM provisioning.
Solution
How is SCIM provisioning enabled for Splunk Cloud?
According to the Splunk documentation, an administrator must select Enable SCIM provisioning in the SSO application. The predefined Splunk Cloud application in the OIN catalog does not support SCIM provisioning, as the only available option under the General tab is Enable on-premises provisioning.
Create a custom SCIM application to display the SCIM provisioning option under the General tab.
When creating a custom SCIM application, the sign-on method must be SAML 2.0 or Secure Web Authentication (SWA), as the custom OpenID Connect (OIDC) application does not currently support SCIM. Enable SCIM provisioning by following the Add SCIM provisioning to app integrations documentation or the How to Enable SCIM Provisioning in Custom App article.
