Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Update SAML Troubleshooting documentation to include /api/security/v1/me API #68447

Closed
hemantmalik opened this issue Jun 5, 2020 · 5 comments
Labels
docs Team:Security Team focused on: Auth, Users, Roles, Spaces, Audit Logging, and more!

Comments

@hemantmalik
Copy link

Description: Update the https://www.elastic.co/guide/en/elasticsearch/reference/current/trb-security-saml.html to include /api/security/v1/me

Use-case: Helps with troubleshooting Auth issues with SAML setup

@flash1293 flash1293 added the Team:Security Team focused on: Auth, Users, Roles, Spaces, Audit Logging, and more! label Jun 10, 2020
@elasticmachine
Copy link
Contributor

Pinging @elastic/kibana-security (Team:Security)

@azasypkin
Copy link
Member

Description: Update the https://www.elastic.co/guide/en/elasticsearch/reference/current/trb-security-saml.html to include /api/security/v1/me

@hemantmalik thanks for filing this, but what exactly you'd like us to mention in the docs regarding Kibana's /api/security/v1/me (it's /internal/security/me now by the way)?

@azasypkin azasypkin added the docs label Jun 11, 2020
@hemantmalik
Copy link
Author

Hi @azasypkin leveraging this API in troubleshooting a SAML issue proved critical to get to the root of the authorization issue in integrating with the SAML provider.

@mbrunnert
Copy link

Hi @azasypkin , I second this as well. When user authentication is setup with SAML and you are troubleshooting a user with no access to Kibana, the Elasticsearch GET /_security/_authenticate is not available. In this scenario Kibana /api/security/v1/me is the only way to tell what SAML groups and Elasticsearch roles a user does and does not have.

@azasypkin
Copy link
Member

Closing this one in favor of a more generic Kibana authentication troubleshooting guide issue where this ask is recorded as well.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
docs Team:Security Team focused on: Auth, Users, Roles, Spaces, Audit Logging, and more!
Projects
None yet
Development

No branches or pull requests

5 participants