
HershikaS.85379 (Customer) asked a question.
I am using a SAML assertion to generate tokens from OKTA authorization server. It works fine when I set assertion expiry less than 30 days. But as soon as I increase the assertion expiry more than 30 days, OKTA is giving error
403 Forbidden:
{
"error": "access_denied",
"error_description": "The resource owner or authorization server denied the request."
}

Hello @HershikaS.85379 (Customer)​ Thank you for reacting out to our Community!
Please see below and article that should apply in your situation as well:
https://community.auth0.com/t/assertion-has-expired-error-enforcement-of-saml-assertion-lifetime-values/106462
Community members help others by clicking Like or Select as Best on responses. Try it today.
💡 Community Moderator Tip: Join a group today and connect with other Okta customers by region or product.