<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content

Okta Salesforce Provisioning Error "The credentials used to connect to the API were invalid"

Okta Integration Network
All Engines
Okta Classic Engine
Okta Identity Engine

Overview

When a Salesforce application integration uses Representational State Transfer (REST) API to authenticate using OAuth 2.0, a provisioning error occurs if the Application Programming Interface (API) connection credentials are invalid. Re-authenticating the integration with the correct OAuth Consumer Key and OAuth Consumer Secret resolves the issue. The Salesforce provisioning flow fails, and Okta displays the following error message on the dashboard:

 

Automatic provisioning of user <user> to app Salesforce failed: The credentials used to connect to the API were invalid; please check your configuration

 

Error Message

Applies To

  • Okta Identity Engine (OIE)
  • Okta Classic Engine
  • Application Programming Interface (API)
  • Salesforce
  • Provisioning

Cause

Invalid credentials for the API connection cause this error.

Solution

What steps resolve the Salesforce API connection error?

Update the provisioning integration settings with the correct OAuth credentials, re-authenticate the connection to Salesforce, and retry the failed provisioning tasks as detailed in either the video demonstration or the written instructions.




 

    1. Go to the Okta Admin Console and navigate to Applications > Applications > Salesforce > Provisioning > Integration > Edit.
    2. Enter the OAuth Consumer Key and OAuth Consumer Secret. See Configure OAuth and REST integration for more details.
      • OAuth Consumer Key: Consumer Key from the Salesforce OAuth settings.
      • OAuth Consumer Secret: Consumer Secret from the Salesforce OAuth settings.
    3. Click Re-authenticate with Salesforce.com to open the authentication prompt.
      Re-authenticate with
    4. In the new Salesforce.com window, enter the administrator username and password that created the Connected OAuth App.
    5. Click Allow to permit access to the Connected App.
    6. On the Provisioning page in Okta, a confirmation message indicates successful authentication. Click Save.
    7. Navigate to Dashboard > Tasks to view any failed assignments in the task list.
      Tasks
    8. Select the failed task for the user and click Retry Selected.

     

    Related References

    Loading
    Okta Support - Okta Salesforce Provisioning Error "The credentials used to connect to the API were invalid"