After signing into Okta, users are redirected to the application's default landing page instead of the specified Default Relay State page during Service Provider (SP)-initiated sign-on.
- Default Relay State
- Service Provider (SP)-initiated Sign On
During Security Assertion Markup Language (SAML) authentication, the Default Relay State configured is truncated after the "&" symbol.
To resolve the issue, follow the steps below:
-
Copy the portion of Default Relay State beyond the "?" symbol. For instance, if the Default Relay State is: https://www.google.com/a/[DOMAIN]/ServiceLogin?continue=https://mail.google.com, copy
continue=https://mail.google.com. -
Paste the copied text into the top field of a URL encoder.
-
Click Encode.
-
Copy the encoded value displayed:
continue%3Dhttps%3A%2F%2Fmail.google.com. -
In the original Default Relay State value, replace the
continue=https://mail.google.comportion with the copied encoded valuecontinue%3Dhttps%3A%2F%2Fmail.google.com. -
The Default Relay State should now be:
https://www.google.com/a/[DOMAIN]/ServiceLogin?continue%3Dhttps%3A%2F%2Fmail.google.com.
By following these steps, users will be directed to the specified Default Relay State page during SP-initiated sign-on instead of the application's default landing page.
