<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
0D50Z00008S3VHZSA3Okta Classic EngineSingle Sign-OnAnswered2024-03-25T21:17:11.000Z2018-10-10T19:51:30.000Z2018-10-19T17:11:10.000Z

cljgu (cljgu) asked a question.

Error with inbound SAML assertion from IDP

I'm using SimpleSAML as an external IDP to generate inbound SAML assertions for JIT provisioning. I am getting an error "The Identity Provider specified Conditions but did not designate us as the target for these conditions. Found 0, expected 1". What does that error mean?


  • emilian.aldea (Okta, Inc.)

    Good morning Matt,

    Emilian here with Okta's Customer Support Team, thank you for reaching out to us.

    Usually this error points out that there's something missing from the configuration. I would recommend checking and making sure that you have all SAML endpoints configured (I would recommend making sure that you have an Audience URI included in the response).

     

    Let`s schedule a meeting so that we can check the configuration in both Okta and your IDP. 

    That would help us to make sure the configuration is correct and will also help me to have a better understanding of the current environment and behavior. 

    Please raise a support ticket from under the My Cases section of the Support portal and make sure to provide us with some available times when we can schedule a meeting.

     

    Thank You,

    Emilian Aldea

    Technical Support Engineer

    Okta Global Customer Care

    Expand Post
    Selected as Best
  • emilian.aldea (Okta, Inc.)

    Good morning Matt,

    Emilian here with Okta's Customer Support Team, thank you for reaching out to us.

    Usually this error points out that there's something missing from the configuration. I would recommend checking and making sure that you have all SAML endpoints configured (I would recommend making sure that you have an Audience URI included in the response).

     

    Let`s schedule a meeting so that we can check the configuration in both Okta and your IDP. 

    That would help us to make sure the configuration is correct and will also help me to have a better understanding of the current environment and behavior. 

    Please raise a support ticket from under the My Cases section of the Support portal and make sure to provide us with some available times when we can schedule a meeting.

     

    Thank You,

    Emilian Aldea

    Technical Support Engineer

    Okta Global Customer Care

    Expand Post
    Selected as Best
  • mike.davie1.5312945692819849E12 (Customer First Programs)

    Hello Matt,

     

    Thanks for posting your inquiry in Okta Community Portal.

     

    If you receive a great answer to your question(s), please help readers find it by marking it the best answer. Hover over the answer and click "Best Answer."

     

    Thank you,

    Mike Davie

    Okta Help Center

     

    Expand Post
  • cljgu (cljgu)

    Thanks for the answer - it was the Audience URI that I had that was incorrect and the assertions are now being accepted.

This question is closed.
Loading
Error with inbound SAML assertion from IDP