Enabling SAML Federation For Carbon Black Cloud
search cancel

Enabling SAML Federation For Carbon Black Cloud

book

Article ID: 291414

calendar_today

Updated On: 03-04-2025

Products

Carbon Black Cloud Endpoint Standard (formerly Cb Defense) Carbon Black Cloud Enterprise EDR (formerly Cb Threathunter) Carbon Black Cloud Workload Carbon Black Cloud Prevention

Issue/Introduction

To enable SAML / Federation for the Carbon Black Cloud Console

Environment

  • Carbon Black Cloud Console: All Versions

Resolution

Additional Information

  • We recommend opening up two instances of the Carbon Black Cloud in separate browsers while configuring SAML in case of misconfiguration so that it the configuration can be adjusted.
  • Once the organization has enabled SAML, administrators will no longer be able to log in with their email address and password.
  • If unable to log in after enabling SAML, contact support to disable it for your organization.
  • For Okta, an Attribute Statement needs to be added (called out in User Guide) to map between "mail" and "user.email"
    From the User Guide
    Set the Attribute Statement as "Name=mail", "Name format=Basic"", and "Value=user.email"