Configured custom IDP single sign-on and tested it is working. However, a new user gets the error below when using SSO to log in to CloudSOC. The URL has ssoerror?code=ERROR_ACCESS_DENIED
Performed network capture during the login from the Browser, noticed 3 requests received HTTP 403 error:
The user was denied access to CloudSOC due to the access profile assigned to them. Either the user had the end-user role or the access profile assigned to the user is inactive.
Ensure you have granted admin access to the user with an active access profile so they can log in to the ClouSOC console.