Uploaded image for project: 'Identity'
  1. Identity
  2. ID-8332

Changing emails to another domain through REST API results in error related to SSO / SAML

      Issue Summary

      Changing emails to another domain through REST API results in error related to SSO / SAML
      This is caused by the enforcement of SSO in the Authentication policies.

      This is reproducible on Data Center: no

      Steps to Reproduce

      1. Claim 2 domains in the Organization
      2. Enforce SSO in a particular user through Auth policies
      3. Try to change the email of this user using the public API

      Expected Results

      Should change the user's email.

      Actual Results

      Results in the following error:

      {"key":"forbidden.action","context":{"allowed":false,"reason":{"key":"authPolicy.saml"}},"errorKey":"forbidden.action","errorDetail":{"allowed":false,"reason":{"key":"authPolicy.saml"}}}
      

      Workaround

      The workaround is to change authentication policies momentarily and disable SSO enforcement.

            [ID-8332] Changing emails to another domain through REST API results in error related to SSO / SAML

            Elelta D (Inactive) made changes -
            Remote Link New: This issue links to "Page (Confluence)" [ 814242 ]
            Ramon M made changes -
            Link New: This issue is duplicated by ID-8336 [ ID-8336 ]
            Joel Ryden made changes -
            Resolution New: Fixed [ 1 ]
            Status Original: Waiting for Release [ 12075 ] New: Closed [ 6 ]
            Joel Ryden made changes -
            Status Original: In Review [ 10051 ] New: Waiting for Release [ 12075 ]
            Joel Ryden made changes -
            Status Original: In Progress [ 3 ] New: In Review [ 10051 ]
            Joel Ryden made changes -
            Remote Link New: This issue links to "METRO-945 (Hello Jira)" [ 810177 ]
            Joel Ryden made changes -
            Status Original: Needs Triage [ 10030 ] New: In Progress [ 3 ]
            Joel Ryden made changes -
            Assignee New: Joel Ryden [ jryden ]
            Joel Ryden made changes -
            Resolution Original: Fixed [ 1 ]
            Status Original: Closed [ 6 ] New: Needs Triage [ 10030 ]
            Timothy Frew made changes -
            Resolution New: Fixed [ 1 ]
            Status Original: Needs Triage [ 10030 ] New: Closed [ 6 ]

              jryden Joel Ryden
              aborzzatto Andre Borzzatto
              Affected customers:
              0 This affects my team
              Watchers:
              6 Start watching this issue

                Created:
                Updated:
                Resolved: