<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content

Group Regex Rule is Not Working

Access Gateway
Okta Classic Engine
Okta Identity Engine

Overview

Users are unable to sign in after the Group rule has been set up in the application, as shown below:

Group Rule setup 
 

Here, as per the rule, Everyone from the org should be able to access, but users are getting the error:

Access to resource '/' in application ' <app name>' has been denied.


Error Message 

 
 

Applies To

  • Okta Access Gateway (OAG)
  • Protected Rule

Cause

The Groups value was set in the application's attributes with some other name. The protected rule must refer to the name defined for OAG. In this example, Groups from IDP was mapped to sampleheader, as shown below: 

Groups mapped to "sampleheader"

Solution

Replacing Groups to OAG mapped value sampleheader resolved the issue. 

Groups mapped to sampleheader 

Loading
Okta Support - Group Regex Rule is Not Working