CASB Gsuite Securlet Activation Getting error 500

book

Article ID: 172447

calendar_today

Updated On:

Products

CASB Security Standard CASB Security Premium CASB Security Advanced CASB Audit CASB Gateway CASB Gateway Advanced

Issue/Introduction

Error 500 when trying to activate the Gsuite Securlet.

Cause

G Suite Securlet prerequisites were not verified and Google user did not hold Super Admin system role for G Suite account or Email of user that was activating Securlet was created out of CASB secondary domain not the CASB primary domain. 

 

Environment

CASB, Gsuite Securlet 

Resolution

Review G Suite Securlet prerequisites and make sure you followed all steps.

It could be you need to create a new user in the primary domain (if you used email with secondary domain) and assigned it as a global admin. If the user is an admin but has not been given access to the Elastica app then it will give this error, so make sure the admin user has been given full rights. Also, make sure the same user existed in CloudSOC with a sysadmin role.

Note: both CASB tenant and Google tenant have a primary and secondary domain in it's configuration. If by any chance they are switched as below: 

CASB primary domain: primarydomain.com
CASB secondary domain: secondarydomain.com

Google primary domain: secondarydomain.com
Google secondary domain: primarydomain.com

please use email activation make out of Google primary domain. In this example please log in with user email: [email protected] 

 

 

 

Attachments