Skip to content

Commit 35f5706

Browse files
authored
Merge branch 'main' into Update-Azure-docs-for-Azure-metrics-source-compatibility-(part-1)
2 parents d84ae28 + 3655bfe commit 35f5706

File tree

71 files changed

+893
-8
lines changed

Some content is hidden

Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.

71 files changed

+893
-8
lines changed

blog-service/2025-05-08-manage.md

Lines changed: 14 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,14 @@
1+
---
2+
title: SCIM Provisioning (Manage)
3+
image: https://help.sumologic.com/img/sumo-square.png
4+
keywords:
5+
- manage
6+
- saml
7+
hide_table_of_contents: true
8+
---
9+
10+
import useBaseUrl from '@docusaurus/useBaseUrl';
11+
12+
We're excited to announce provisioning for Sumo Logic using SCIM (System for Cross-domain Identity Management). Now you can automatically provision and deprovision users in Sumo Logic with an identity provider like Microsoft Entra ID, Okta, or OneLogin.
13+
14+
[Learn more](/docs/manage/security/scim/).

cid-redirects.json

Lines changed: 4 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -1427,6 +1427,7 @@
14271427
"/APIs/About-the-Search-Job-API": "/docs/api/search-job",
14281428
"/APIs/Search-Job-API/Search-Job-API-Overview": "/docs/api/search-job",
14291429
"/APIs/Search-Job-API/About-the-Search-Job-API": "/docs/api/search-job",
1430+
"/docs/api/search/search-job-api": "/docs/api/search-job",
14301431
"/APIs/Service_Allowlist_Management_API": "/docs/api/service-allowlist",
14311432
"/APIs/Tokens_Management_API": "/docs/api/token-management",
14321433
"/APIs/Tracing_APIs": "/docs/api/tracing",
@@ -1441,6 +1442,7 @@
14411442
"/APIs/Troubleshooting-APIs/Receiving-500-errors-when-using-the-Search-Job-API": "/docs/api/troubleshooting",
14421443
"/APIs/Troubleshooting-APIs/Search-Job-API-Results-into-formatted-JSON-file": "/docs/api/troubleshooting",
14431444
"/APIs/User-Management-API": "/docs/api/user-management",
1445+
"/Archive": "/docs/release-notes",
14441446
"/Archive/Collector_Release_Notes_Archive": "/release-notes-collector",
14451447
"/docs/api/collectors": "/docs/api/collector-management",
14461448
"/docs/api/fields": "/docs/api/field-management",
@@ -3538,6 +3540,7 @@
35383540
"/Other_Solutions/Work_from_Home_Solution": "/docs/observability/work-from-home-vpn",
35393541
"/Other_Solutions/Work_from_Home_Solution/VPN_Monitoring_Resources_and_Tips": "/docs/observability/work-from-home-vpn",
35403542
"/Other_Solutions/Software_Development_Optimization_Solution": "/docs/observability/sdo",
3543+
"/Release_Archive": "/docs/release-notes",
35413544
"/Release_Archive/Collector_Release_Notes_Archive": "/release-notes-collector",
35423545
"/Release_Archive/Quick-Start-Tutorial(deprecated)": "/docs/get-started",
35433546
"/Release_Archive/Quick-Start-Tutorial(deprecated)/01_Sumo_Logic_Quick_Start_Tutorial": "/",
@@ -4310,6 +4313,7 @@
43104313
"/docs/manage/partitions-data-tiers/manage-indexes-variable-retention": "/docs/manage/partitions/manage-indexes-variable-retention",
43114314
"/docs/manage/partitions-data-tiers/decommission-partition": "/docs/manage/partitions/decommission-partition",
43124315
"/docs/manage/partitions-data-tiers/data-tiers": "/docs/manage/partitions/data-tiers",
4316+
"/docs/manage/partitions/data-tier": "/docs/manage/partitions/data-tiers",
43134317
"/docs/manage/partitions/data-tier/view-partition-details": "/docs/manage/partitions/data-tiers/view-partition-details",
43144318
"/docs/manage/partitions/data-tier/data-tiers-faqs": "/docs/manage/partitions/data-tiers/faq",
43154319
"/docs/manage/partitions-data-tiers/data-tiers-faqs": "/docs/manage/partitions/data-tiers/faq",

docs/api/index.md

Lines changed: 6 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -196,14 +196,19 @@ Use the Sumo Logic Application Programming Interfaces (APIs) to interact with ou
196196
</div>
197197
<div className="box smallbox card">
198198
<div className="container">
199-
<a href="/docs/api/scan-budget"><img src={useBaseUrl('img/icons/general/calendar.png')} alt="Thumbnail icon" width="50"/><h4>Scan Budget</h4></a>
199+
<a href="/docs/api/scan-budget"><img src={useBaseUrl('img/icons/operations/data-volume.png')} alt="Thumbnail icon" width="50"/><h4>Scan Budget</h4></a>
200200
</div>
201201
</div>
202202
<div className="box smallbox card">
203203
<div className="container">
204204
<a href="/docs/api/scheduled-views"><img src={useBaseUrl('img/icons/general/calendar.png')} alt="Thumbnail icon" width="50"/><h4>Scheduled Views</h4></a>
205205
</div>
206206
</div>
207+
<div className="box smallbox card">
208+
<div className="container">
209+
<a href="/docs/api/scim-user"><img src={useBaseUrl('img/icons/general/session.png')} alt="Thumbnail icon" width="50"/><h4>SCIM User</h4></a>
210+
</div>
211+
</div>
207212
<div className="box smallbox card">
208213
<div className="container">
209214
<a href="/docs/api/search-job"><img src={useBaseUrl('img/icons/search.png')} alt="Thumbnail icon" width="50"/><h4>Search Job</h4></a>

docs/api/scim-user.md

Lines changed: 40 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,40 @@
1+
---
2+
id: scim-user
3+
title: SCIM User Management APIs
4+
sidebar_label: SCIM User
5+
description: Use HTTP endpoints to manage your SCIM configuration.
6+
---
7+
8+
import useBaseUrl from '@docusaurus/useBaseUrl';
9+
import ApiIntro from '../reuse/api-intro.md';
10+
import ApiRoles from '../reuse/api-roles.md';
11+
12+
<img src={useBaseUrl('img/icons/general/session.png')} alt="Thumbnail icon" width="50"/>
13+
14+
The SCIM User Management API allows you to provision users to Sumo Logic from [SCIM provisioning providers](/docs/manage/security/scim/).
15+
16+
## Documentation
17+
18+
<ApiIntro/>
19+
20+
| Deployment | Documentation URL |
21+
|:------------|:---------------------------------------------------------------------|
22+
| AU | https://api.au.sumologic.com/docs/#tag/scimUserManagement |
23+
| CA | https://api.ca.sumologic.com/docs/#tag/scimUserManagement |
24+
| DE | https://api.de.sumologic.com/docs/#tag/scimUserManagement |
25+
| EU | https://api.eu.sumologic.com/docs/#tag/scimUserManagement |
26+
| FED | https://api.fed.sumologic.com/docs/#tag/scimUserManagement |
27+
| IN | https://api.in.sumologic.com/docs/#tag/scimUserManagement |
28+
| JP | https://api.jp.sumologic.com/docs/#tag/scimUserManagement |
29+
| KR | https://api.kr.sumologic.com/docs/#tag/scimUserManagement |
30+
| US1 | https://api.sumologic.com/docs/#tag/scimUserManagement |
31+
| US2 | https://api.us2.sumologic.com/docs/#tag/scimUserManagement |
32+
33+
## Required role capabilities
34+
35+
<ApiRoles/>
36+
37+
* Security
38+
* Manage SAML
39+
* User Management (all role capabilities)
40+

docs/manage/security/saml/set-up-saml.md

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -36,15 +36,15 @@ The provisioning process works as follows:
3636

3737
This section has key information about SAML in Sumo.
3838

39-
## Access keys are not controlled by SAML
39+
### Access keys are not controlled by SAML
4040

4141
This means that if a user has been turned off on the SSO side, their access keys would still be valid. For this reason, administrators should audit users regularly and disable access keys when necessary.
4242

43-
## SAML does not provide a deprovisioning mechanism 
43+
### SAML does not provide a deprovisioning mechanism 
4444

4545
This means that if a user is deleted or disabled in the SSO database, it will not be reflected in Sumo Logic. However, these users would no longer be able to login to Sumo Logic via SSO. Administrators can delete these users from the **Administration > Users and Roles > Users** page in Sumo Logic. For information about what happens when a user is deleted, and transferring a deleted user's content to another user, see [Delete a User](../../users-roles/users/delete-user.md).
4646

47-
## Only one certificate for each SAML configuration is currently supported
47+
### Only one certificate for each SAML configuration is currently supported
4848

4949
Only one token-signing ADFS X.509 for each SAML configuration is currently supported. When you need to do a certificate refresh on the ADFS server, you must update the Sumo certificate afterwards.
5050

Lines changed: 69 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,69 @@
1+
---
2+
id: about-scim-provisioning
3+
title: About SCIM Provisioning
4+
sidebar_label: About
5+
description: Learn about provisioning users into Sumo Logic using SCIM.
6+
---
7+
8+
import useBaseUrl from '@docusaurus/useBaseUrl';
9+
10+
You can utilize Sumo Logic [SCIM User Management APIs](/docs/api/scim-user/) to automatically provision and deprovision users in Sumo Logic when users are created or removed within your identity provider. Sumo Logic can be integrated with any identity provider that is [SCIM 2](https://scim.cloud/) compliant.
11+
12+
## Directions for specific providers
13+
14+
This article contains general guidance on setting up identity providers to provision with Sumo Logic.
15+
16+
See the following articles for directions to configure specific providers:
17+
* [Provision with Microsoft Entra ID](/docs/manage/security/scim/provision-with-microsoft-entra-id/)
18+
* [Provision with Okta](/docs/manage/security/scim/provision-with-okta/)
19+
* [Provision with OneLogin](/docs/manage/security/scim/provision-with-onelogin/)
20+
21+
## General process to configure provisioning for Sumo Logic
22+
23+
Although the process will differ depending on your provider, following are the general steps to configure your provider to provision with Sumo Logic.
24+
25+
### Prerequisites
26+
27+
#### Create an access key
28+
29+
Before configuring a provider, create an [access key](/docs/manage/security/access-keys/). (We recommend using a service account to create the access key.) This access key will provide authorization to provision users from the provider into Sumo Logic.
30+
31+
When you create the access key, copy its access ID and access key values. You will enter these when you set up provisioning to use one of the following authorization methods:
32+
* Basic authentication
33+
* Username: Access ID
34+
* Password: Access key
35+
* Bearer token<br/>Use [Base64 encoding](https://www.base64encode.org/) to Base64 encode `<access ID>:<access key>`.
36+
37+
#### Set up SAML
38+
39+
[Set up SAML for single sign-on](/docs/manage/security/saml/set-up-saml/) in the Sumo Logic instance where you will provision users. This will allow connection to Sumo Logic for provisioning. Copy the single sign-on URL (Assertion Consumer URL) and entity ID from your Sumo Logic SAML configuration to set up single sign-on in your provider.
40+
41+
<img src={useBaseUrl('img/security/provision-sumo-logic-saml-settings.png')} alt="ACS and entity ID from Sumo Logic" style={{border: '1px solid gray'}} width="800" />
42+
43+
### Step 1: Create an app
44+
45+
Create an application in your provider. You will configure this app in the following steps.
46+
47+
### Step 2: Set up single sign-on
48+
49+
Set up single sign-on for the app to connect to Sumo Logic. Copy the Assertion Consumer URL and entity ID from the SAML configuration in Sumo Logic to use in the configuration. (See [Set up SAML](#set-up-saml) above.)
50+
51+
### Step 3: Set up roles
52+
53+
Set up roles in your app to match roles in Sumo Logic (for example, Administrator and Analyst). When users assigned these roles in your app are provisioned, the roles are automatically assigned to the provisioned users in Sumo Logic.
54+
55+
### Step 4: Assign users to your app
56+
57+
Assign users to your app. All users assigned to the app will be provisioned.
58+
59+
### Step 5: Set up provisioning
60+
61+
When you set up provisioning for the app, provide a Sumo Logic access key to authorize access to Sumo Logic. (See [Create an access key](#create-an-access-key) above.)
62+
63+
For the SCIM base URL, provide the Sumo Logic [API endpoint for your deployment](/docs/api/getting-started/#sumo-logic-endpoints-by-deployment-and-firewall-security) for the [SCIM User Management APIs](/docs/api/scim-user/) using the format `<api-endpoint>/v1/scim/`. For example, `https://api.sumologic.com/api/v1/scim/`.
64+
65+
### Step 6: Verify provisioning
66+
67+
Test provisioning to ensure that users assigned to the app are provisioned correctly into Sumo Logic. Verify in your provider's logs and in the Sumo Logic UI.
68+
69+

docs/manage/security/scim/index.md

Lines changed: 38 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,38 @@
1+
---
2+
slug: /manage/security/scim
3+
title: SCIM Provisioning
4+
description: Learn how to provision users in Sumo Logic using SCIM.
5+
---
6+
7+
import useBaseUrl from '@docusaurus/useBaseUrl';
8+
9+
Learn how to provision and deprovision users in Sumo Logic using SCIM (System for Cross-domain Identity Management).
10+
11+
This section contains the following articles:
12+
13+
<div className="box-wrapper" >
14+
<div className="box smallbox card">
15+
<div className="container">
16+
<a href="/docs/manage/security/scim/about-scim-provisioning"><img src={useBaseUrl('img/icons/general/session.png')} alt="icon" width="40"/><h4>About SCIM Provisioning</h4></a>
17+
<p>Learn about provisioning users in Sumo Logic using SCIM.</p>
18+
</div>
19+
</div>
20+
<div className="box smallbox card">
21+
<div className="container">
22+
<a href="/docs/manage/security/scim/provision-with-microsoft-entra-id"><img src={useBaseUrl('img/icons/general/session.png')} alt="icon" width="40"/><h4>Provision with Microsoft Entra ID</h4></a>
23+
<p>Learn how to provision users in Sumo Logic with Microsoft Entra ID (formerly Azure Active Directory).</p>
24+
</div>
25+
</div>
26+
<div className="box smallbox card">
27+
<div className="container">
28+
<a href="/docs/manage/security/scim/provision-with-okta"><img src={useBaseUrl('img/icons/general/session.png')} alt="icon" width="40"/><h4>Provision with Okta</h4></a>
29+
<p>Learn how to provision users in Sumo Logic with Okta</p>
30+
</div>
31+
</div>
32+
<div className="box smallbox card">
33+
<div className="container">
34+
<a href="/docs/manage/security/scim/provision-with-onelogin"><img src={useBaseUrl('img/icons/general/session.png')} alt="icon" width="40"/><h4>Provision with OneLogin</h4></a>
35+
<p>Learn how to provision users in Sumo Logic with OneLogin</p>
36+
</div>
37+
</div>
38+
</div>

0 commit comments

Comments
 (0)