Skip to main content

allowlisted_users

Creates, updates, deletes, gets or lists an allowlisted_users resource.

Overview​

Nameallowlisted_users
TypeResource
Idsumologic.saml.allowlisted_users

Fields​

The following fields are returned by SELECT queries:

NameDatatypeDescription
user_idstringUnique identifier of the user. (wire: userId)
first_namestringFirst name of the user. (wire: firstName)
last_namestringLast name of the user. (wire: lastName)
can_manage_samlbooleanIf the user can manage SAML Configurations. (wire: canManageSaml)
emailstringEmail of the user. (example: john@sumologic.com)
is_activebooleanChecks if the user is active. (wire: isActive)
last_loginstring (date-time)Timestamp of the last login of the user. (wire: lastLogin)

Methods​

The following methods are available for this resource:

NameAccessible byRequired ParamsOptional ParamsDescription
listselectregionGet a list of allowlisted users.
deletedeleteuser_id, regionRemove an allowlisted user requiring them to sign in using SAML.
addexecuserId, regionAllowlist a user from SAML lockdown allowing them to sign in using a password in addition to SAML.

Parameters​

Parameters can be passed in the WHERE clause of a query. Check the Methods section to see which parameters are required or optional for each operation.

NameDatatypeDescription
regionstringSumo Logic deployment (au, ca, ch, de, eu, fed, in, jp, kr, us1, us2). Resolved from the SUMOLOGIC_ENVIRONMENT environment variable when it is set (x-stackQL-envVar, the same variable the Terraform provider reads); otherwise defaults to us2. A WHERE region = '...' value always takes precedence. (enum: [au, ca, ch, de, eu, fed, in, jp, kr, us1, us2], default: us2, x-stackQL-envVar: SUMOLOGIC_ENVIRONMENT)
userIdstringIdentifier of the user.
user_idstringIdentifier of user that will no longer be allowlisted from SAML Lockdown. (wire: userId)

SELECT examples​

Get a list of allowlisted users.

SELECT
user_id,
first_name,
last_name,
can_manage_saml,
email,
is_active,
last_login
FROM sumologic.saml.allowlisted_users
WHERE region = '{{ region }}' -- required unless SUMOLOGIC_ENVIRONMENT is set
;

DELETE examples​

Remove an allowlisted user requiring them to sign in using SAML.

DELETE FROM sumologic.saml.allowlisted_users
WHERE user_id = '{{ user_id }}' --required
AND region = '{{ region }}' --required unless SUMOLOGIC_ENVIRONMENT is set
;

Lifecycle Methods​

EXEC variables use wire (API) names.

Allowlist a user from SAML lockdown allowing them to sign in using a password in addition to SAML.

EXEC sumologic.saml.allowlisted_users.add
@userId='{{ userId }}' --required,
@region='{{ region }}' --required unless SUMOLOGIC_ENVIRONMENT is set
;