<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content

Okta Access Gateway Fails to Connect when Using iPrism Webtool

Access Gateway
Okta Classic Engine
Okta Identity Engine

Overview

When using the iPrism Webtool proxy, connections fail without errors.

Applies To

  • Okta Access Gateway (OAG)
  • iPrism

Cause

The Access Gateway TCP connection on port 443 can be blocked by the proxy.

Solution

Add an IP exception in iPrism Webtool: 

  1. Go to Users & Networks > Exceptions > Add.
  2. Exception Type: No Filter.
  3. Source IP start and Source IP end: This is the range of the Okta Access Gateway (OAG) nodes.
  4. Destination IP start and Destination IP end: yum.oag.okta.com, Okta IDP, and admin/worker nodes as ha key is synced over https.
  5. Specific Ports: 443, and check the TCP and UDP boxes.

 

Related References

Loading
Okta Support - Okta Access Gateway Fails to Connect when Using iPrism Webtool