<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
0D54z00007c6tFVCAYOkta Classic EngineAuthenticationAnswered2024-03-25T11:09:39.000Z2022-04-27T13:34:13.000Z2022-04-28T16:56:24.000Z

zoxyp (zoxyp) asked a question.

SAML response is holding old information. How can I clear it?

Recently a few users had their email addresses updated in OKTA. When they log in to an app the SP is receiving their old email address in the SAML response causing the log in to be rejected. The SP confirmed this is the case by changing the email in their system to match what is in the SAML response and this works. Is there a setting or step we are missing when changing email addresses?


  • flaviu.vrinceanu1.5628408972654734E12 (Customer Success Service Delivery)

    Hi @zoxyp (zoxyp)​,

     

    Thank you for posting on the Okta community page!

     

    If the email address was updated on the users profile, you should make sure that the application username in Okta is as well update, by going on the app profile in your Okta organization and check the attributes on the assignments tab.

     

    Okta updates the username automatically only if some conditions are met, based on the bellow documentation:

     

    If you are not using the email address as the username in your application, you could double check the attribute on the application profile in Okta for the users in question.

     

    I hope the above information is helpful!

    Expand Post
This question is closed.
Loading
SAML response is holding old information. How can I clear it?