<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
0D54z00007uY2OnCAKOkta Classic EngineAdministrationAnswered2022-08-29T14:51:38.000Z2022-08-09T13:10:06.000Z2022-08-10T21:52:37.000Z

MohammadD.22404 (Customer) asked a question.

AWS Client VPN Okta SAML SignOn using okta group name attribute

Hello,

Hope you are doing well.

 

I'm trying to get our new AWS client vpn setup to restrict access to certain CIDRs via group name and using authorization rules to test.

I created AWS Client VPN application and then forgot to setup memberOf to match *. once i added that I see that it allows everything even If I try to restrict that from AWS client endpoint rules , I'm I doing something wrong here ?

Setup : AWS cVPN < > Okta

I don't see any references of this working with Okta , all examples refers to AWS SSO and the setup manual only mentions Okta but that does not work and either deny access when memberOf match is not set to * or allows everything.

 

Appreciate your help in advance


This question is closed.
Loading
AWS Client VPN Okta SAML SignOn using okta group name attribute