function readOnly(count){ }
Starting November 20, the site will be set to read-only. On December 4, 2023,
forum discussions will move to the Trailblazer Community.
+ Start a Discussion
Shari LevandowskiShari Levandowski 

SSO Error

I have connected our SSO (OKTA) to salesforce.  When logging in to salesforce we receive this error.
Single Sign-on Error
We cannot log you in because of an issue with single sign-on.  Contact your salesforce admin for help.  

I have verified all settings in setup/settings/identity/ Single Sign-on Settings.
I need to know what I have missed or if there is a deeper issue.

Thank  you,
 
AbhinavAbhinav (Salesforce Developers) 
Hi Shari,

Open you Single Sign-On settings and Then Click on SAML Assertion Validator  which give you all details for the latest loging which you have tried.

If it helps,Please mark it as best so that it can help others in future.

Thanks!
Shari LevandowskiShari Levandowski
Thank you Abhinav  
The results of the validator are;
Unexpected Exceptions
  Unable to parse the response
  Premature end of file.
1. Validating the Status
  Unknown
2. Looking for an Authentication Statement
  Unknown
3. Looking for a Conditions statement
  Unknown
4. Checking that the timestamps in the assertion are valid
  Unknown
5. Checking that the Attribute namespace matches, if provided
  Unknown
6. Miscellaneous format confirmations
  Unknown
7. Confirming Issuer matches
  Unknown
8. Confirming a Subject Confirmation was provided and contains valid timestamps
  Unknown
9. Checking that the Audience matches
  Unknown
10. Checking the Recipient
  Unknown
11. Validating the Signature
  Unknown
12. Checking that the Site URL Attribute contains a valid site url, if provided
  Unknown
13. Looking for portal and Organization ID, if provided
  Unknown
14. Checking if session security level is valid, if provided
  Unknown
AbhinavAbhinav (Salesforce Developers) 
Hi Shari,

It seems very genric error, may be issue with SAML Response .

I would suggest cross check you SSO settings.

https://saml-doc.okta.com/SAML_Docs/How-to-Configure-SAML-2.0-in-Salesforce.html

Thanks!


 
Shari LevandowskiShari Levandowski

Abhinav, 

I have verified these settings to the best of my ability.  Are there other logs or records I can check to find more detail?

Shari LevandowskiShari Levandowski
Abhinav,
Is there any further information you can share on this issue?  Is there another test I can run or log I can referance?
AbhinavAbhinav (Salesforce Developers) 
Okay Sari ,I will  check this will revert once I find something related.
Shari LevandowskiShari Levandowski

Abhinav, is there any new informaiton on this issue?   
AbhinavAbhinav (Salesforce Developers) 
Hi Shari,

I would request you to please raise a case with Salesforce support so that your issue can be routed to specific team and as this would require additional details(like Org details etc),so I request you to provide all details while raising the case.

Thanks!