elastic / elastic/stack-docs

[DOCS] SAML with Azure Active Directory using outdate API

Open
#2,224 0 comments 0 reactions 0 assignees View on GitHub
Dominant language
Java
Stars
105
Forks
249
PR merge metrics
No merged PRs in 30d

Description

This [page](https://www.elastic.co/guide/en/cloud/current/ec-securing-clusters-saml-azure.html) the last section for Configure SAML with Azure AD to access Kibana that discusses "Role Mapping" has an example that leverages an outdate API. Instead of `POST /_xpack/security/role_mapping/SAML_kibana`, the API should be `POST /_security/role_mapping/SAML_kibana`

This example could be made more complete by showing how to create a role against an Active Directory group rather than which I don't believe is a default returned from Azure AD into our Name field. By default, I believe its the user's principal, which based upon the example configurations above would be the users email address.

image

Contributor guide

No contributing guide indexed for this repository

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.