aws / aws/amazon-redshift-python-driver

Is`OktaCredentialsProvider.handle_saml_assertion` compatible with SageMaker instances?

Open
#266 0 comments 0 reactions 0 assignees View on GitHub
Dominant language
Python
Stars
220
Forks
86
PR merge metrics
No merged PRs in 30d

Description

I'm encountering an issue when using `redshift_connector` with Okta-based authentication inside my organisation's SageMaker environment.

In `OktaCredentialsProvider.handle_saml_assertion` I receive an error [okta_credentials_provider.py#L158](https://github.com/aws/amazon-redshift-python-driver/blob/fd81061c4dfee9ed3001be039f6b1826d8366302/redshift_connector/plugin/okta_credentials_provider.py#L158) despite receiving a 200 OK and a response of length > 2k.

Upon investigating the logs it seems to be down to a browser or Javascript issue? I've tried on both SageMaker Studio Code Editor and SageMaker Notebook instances and get the same issue.

It's also strange that `OktaCredentialsProvider.okta_authentication` works perfectly and I'm able to retrieve the `okta_session_token`, but the later step fails.

The same identical code works perfectly on my local machine.

I've attached the relevant part of the response below:

```
...



Javascript is required


Javascript is disabled on your browser. Please enable Javascript and refresh this page.


Refresh






Your OneDrive version is not supported


Upgrade now by installing the OneDrive for Business Next Generation Sync Client to login to Okta



Learn how to upgrade



Cookies are required


Cookies are disabled on your browser. Please enable Cookies and refresh this page.



Refresh




...







The page has timed out


If this page does not reload automatically, please refresh your browser.




Contributor guide

Open the contributing guide

Research direction

Start in redshift_connector/plugin/okta_credentials_provider.py at handle_saml_assertion, especially line 158, and compare the response handling between a local machine and SageMaker. Confirm whether the SageMaker response can be handled compatibly and document a reproducible test or expected behavior for the fix.

Written by the indexing model from the issue text.

Assessment

Tech stack
aws, python
Domain
authentication, databases
Issue type
Bug
Difficulty
4/5
Estimated time
3-5 days
Activity status
Stale
Clarity
Needs clarification
Newbie friendliness
35/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.