<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
Fix SSO Error Code 4000 for SendGrid App
Single Sign-On
Okta Classic Engine
Okta Identity Engine
Overview

This article addresses a Single Sign-On (SSO) login error code that may appear in the login URL when integrating SendGrid with Okta. The URL may look similar to the following:

 

login.sendgrid.com/login/identifier?redirect_to=%2Fssologin%3Ferror%3Dsso-error%26error_code%3D4000

 

4000 Error Code displayed in Login URL

Applies To
  • Security Assertion Markup Language (SAML)
  • Single Sign-On (SSO)

 

Cause
Solution

Scenario 1

The resolution process involves making changes on SendGrid's side after fully configuring the integration.

  1. Navigate to the Twilio SendGrid platform.
  2. Look for Teammates in the left-side menu.
  3. Identify if the users are part of the Password Teammate group or the SSO Teammate group.
  4. If the user already exists in the Password Teammate group, the user's profile must be deleted and then added back to the SSO Teammate group.

If there is only one account available with admin roles, there are two options:

  • Provide admin rights to another user, have the initial admin removed, and then add them to the SSO Teammates group.
  • Create another user with admin privileges.
    • This account can be used as a backup or deleted after the original admin is added to the SSO Teammates group.

 

Scenario 2

Grab the Okta metadata values from the SendGrid application from the Okta Admin Console, which can be located on the Sign On tab, either in the SAML settings or can be pulled from the View SAML setup instructions document. 

  • Ensure that the SAML Issuer ID and the Embedded Link found on the Okta side match the values that were inserted on the SendGrid side.  
Loading
Fix SSO Error Code 4000 for SendGrid App