AWS IAM Identity Center error "Looks like this code isn't right." when using Azure AD as external provider

0

I'm setting up a test instance of AWS identity Centre using Azure AD as the external provider. I've set it up using the instructions provided but get a very generic error of "Looks like this code isn't right. Please try again." My Googling hasn't bought up anything specific. When I test the SSO from Azure, it says that it successfully issued a token. So it is presumably an issue on the AWS side.

Has anyone come across this before?

3 réponses
0
Réponse acceptée

I think I have found the solution. I removed the Emails[type eq "work"]value and PhoneNumbers[type eq "work"]value attributes from the user provisioning. I was able to then provision the user and login as them.

répondu il y a un an
0

I have come across the exact same issue... tried multiple times but no joy.

Like yourself when I remove the user from the Azure AD side, I get the correct message.

I have also enabled Automatic provisioning and can see AzureAD user provisioned into AWS Identity centre, but I still cannot login

répondu il y a un an
0

I am having this exact same issue using Okta. I followed the setup steps multiple times verbatim and am met with this opaque error. I also tried not mapping the emailType and phoneType attributes as suggested above.

Any help here would be truly appreciated. This is a huge blocker for us.

répondu il y a un an

Vous n'êtes pas connecté. Se connecter pour publier une réponse.

Une bonne réponse répond clairement à la question, contient des commentaires constructifs et encourage le développement professionnel de la personne qui pose la question.

Instructions pour répondre aux questions