OneLogin
OneLogin is a cloud-based identity and access management (IAM) platform that provides single sign-on (SSO), multi-factor authentication (MFA), and user lifecycle management capabilities for enterprises. It serves as a centralized identity provider (IdP) and access management solution that helps organizations secure access to applications, enforce authentication policies, and manage user identities across their technology stack.
| Category | Identity |
| Direction | Query source |
| Sign-in | None |
| Query languages | STIX |
| Website | onelogin.com |
Before you start
The setup page can't take credentials for OneLogin yet. Create the connection, then contact Huntbase support to finish signing it in.
- To look up the credentials later, go to Settings › API and click the credential's row.
For the vendor's own instructions, see OneLogin API credentials documentation.
Connect OneLogin
- Go to Connections and click New connection, or click New connection on the OneLogin product page.
- On Product, pick OneLogin and choose the Owner.
- On Details, give the connection a Name and, optionally, a Description.
- On Connect, fill in the settings and credentials described below.
- On Verify, review the summary and click Create & check.
For everything else on the setup page — saving a draft, I'll do this later, and what each check result means — see Connections.
Settings
Where your OneLogin lives:
| Field | Required | Notes |
|---|---|---|
| Region | Yes | The region your OneLogin account is hosted in, either us or eu. Defaults to us. |
Advanced settings
These settings are under Advanced. You can usually leave them alone.
| Field | Required | Notes |
|---|---|---|
| Max Results | No | Maximum number of results to return per query. Defaults to 1000. |
Query it
Once connected, OneLogin can serve these languages in a query tab, and Scout can use it when you ask in Auto:
| Language | Use it for |
|---|---|
| STIX | STIX patterns for indicator sweeps, translated into the product's native search. |
Next steps
- Connections — health, credentials and settings after you connect
- Query languages — syntax, parameters and time ranges
- Chatting with Scout — ask questions without writing a query
- All integrations — the rest of the catalog