Carbon Black Cloud Audit and Remediation (formerly Cb Live Ops)Carbon Black Cloud Endpoint Standard (formerly Cb Defense)Carbon Black Cloud Enterprise EDR (formerly Cb Threathunter)Carbon Black Cloud Managed Detection (formerly Cb Threatsight)Carbon Black Cloud Managed Detection and ResponseCarbon Black Cloud Managed Threat HuntingCarbon Black Cloud PreventionCarbon Black Cloud Workload
Issue/Introduction
Steps needed to complete the Carbon Black Cloud AuthHub migration for customers using Okta IDP
Within Okta, under "Configure SAML " > General, set the "Single sign-on URL" as the "Entity ID / Audience" shown in the migration wizard. Set the "Audience URI (SP Entity ID)" as the "Assertion Consumer Service URL / Recipient" shown in the wizard as well (https://access.broadcom.com/default/saml/v1/sp/acs)
Create the required attributes ("FirstName", "LastName", "Email"). Note these attributes as they will be needed in Step 6.
Click "Next" > Finish
On the "Sign On" tab of Okta click "View SAML setup instructions"
Take the information from Okta and enter it on the "Configure AuthHub Attributes" migration UI screen: Copy the "FirstName","LastName", and "Email" attributes from step 3 and enter them in their respective section. Copy the "Identity Provider Single Sign-On URL" and enter it in the "Single sign-on URL (HTTP-redirect binding)" field in the migration UI window. Copy the "Identity Provider Issuer" and enter it in the "Entity ID" or "Issue URL / Issue Unique Identifier" field in the migration UI window. Copy the "X.509 Certificate" and enter it in the migration UI window.
Complete the rest of the migration wizard.
Additional Information
After migration it's recommended to try logging in with Incognito mode, and clearing the browser cache if seeing strange or inconsistent login behavior