cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1376
Views
0
Helpful
2
Replies

SSO is not working if user's email address is the not the same as his UPN

johnly
Level 1
Level 1

Hi all,

 

We've got SSO enabled, and it seems to only work if the Webex user's email address (used for Webex login) is the same as the user's User Principal Name.  The user would get the "account is not authorized" error when trying to sign in.

 

We're working to claim the domain associated with the Webex email address, but I doubt that would resolve the issue.

 

 

Does anyone know how to make this work? 

 

Thanks,

J

2 Replies 2

Jonathan Schulenberg
Hall of Fame
Hall of Fame
This is probably a configuration issue on your IdP: which Active Directory attribute is it mapping to the ‘uid’ Webex attribute in the SAML response? It should be mail, not UPN.

AD attribute mail is mapped to the “uid” WebEx attribute.  WebEx user email address is used on the login page/screen.