SAML authentication failure - "failed saml attributes login"
search cancel

SAML authentication failure - "failed saml attributes login"

book

Article ID: 400215

calendar_today

Updated On:

Products

Symantec ZTNA

Issue/Introduction

When logging in to ZTNA tenant using SAML authentication user sees 'Unauthorized operation' error. 'The operation you were trying to perform was blocked (HTTP status 401):

Environment

ZTNA tenant integrated with Azure IdP.

Cause

This error occurs when SAML response does not contain all required attributes.

Resolution

Make sure that Azure IdP returns all required attributes. List of mandatory attributes can be found here

NOTE: Please make sure that user profile is populated with required information. For example, one of required attributes is email address. Azure returns this attribute only if email address is configured in user's profile.