<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Qliksense app security for OKTA users in Management &amp; Governance</title>
    <link>https://community.qlik.com/t5/Management-Governance/Qliksense-app-security-for-OKTA-users/m-p/1789968#M30628</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;From memory, I remmember I had problems using the extra fields from the OKTA configuration to be used in QMC / Hub rules.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Wed, 10 Mar 2021 10:55:59 GMT</pubDate>
    <dc:creator>eliran</dc:creator>
    <dc:date>2021-03-10T10:55:59Z</dc:date>
    <item>
      <title>Qliksense app security for OKTA users</title>
      <link>https://community.qlik.com/t5/Management-Governance/Qliksense-app-security-for-OKTA-users/m-p/1789931#M30627</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I am working on providing app security for OKTA users(We did SAML configuration as per the Qlik guideline), we have two user directories now PRD(LDAP) and OKTA one.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I am able to restrict stream for OKTA users using user.userdirectory="OKTA" condition and it is working fine. Further I want to restrict apps within this stream should be accessible to OKTA users as per the respective roles they have, not all apps should visible to user. Here these roles we have with LDAP user directory.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;So to create app security rule I used below condition but not a single app is visible to OKTA user.&lt;/P&gt;
&lt;P&gt;user.userdirectory="OKTA" and&amp;nbsp;&lt;A href="mailto:resource.@Organization=user.environment.group" target="_blank" rel="noopener"&gt;resource.@Organization=user.environment.group&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;Here&amp;nbsp;&lt;A href="mailto:resource.@Organization=user.environment.group" target="_blank" rel="noopener"&gt;@Organization&lt;/A&gt;&amp;nbsp;is custom properties which will have user roles/groups.&lt;/P&gt;
&lt;P&gt;Please let me know if anyone came across this or already implemented some security.&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Wed, 29 Jan 2025 17:03:10 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/Qliksense-app-security-for-OKTA-users/m-p/1789931#M30627</guid>
      <dc:creator>swapnilkurundwade</dc:creator>
      <dc:date>2025-01-29T17:03:10Z</dc:date>
    </item>
    <item>
      <title>Re: Qliksense app security for OKTA users</title>
      <link>https://community.qlik.com/t5/Management-Governance/Qliksense-app-security-for-OKTA-users/m-p/1789968#M30628</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;From memory, I remmember I had problems using the extra fields from the OKTA configuration to be used in QMC / Hub rules.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 10 Mar 2021 10:55:59 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/Qliksense-app-security-for-OKTA-users/m-p/1789968#M30628</guid>
      <dc:creator>eliran</dc:creator>
      <dc:date>2021-03-10T10:55:59Z</dc:date>
    </item>
  </channel>
</rss>

