This article covers common scenarios for troubleshooting single sign-on (SSO) errors and managing users configured for SSO.
Managing Users After Enabling SSO
If a user's Is SAML User field is set to Yes, Yext creates, edits, and saves that user as an SSO user.
If Is SAML User is changed to No, Yext revokes SSO access from the user. Saving a change to the Is SAML User field also revokes all of that user's open sessions.
Users Without Unique Usernames
If you set a user's Is SAML User field to Yes, their username must be unique across every user in the account. If it isn't, Yext displays an error message, and you need to update that user's username before you can continue.
SAML Login Errors
If a user tries to log in to Yext through their identity provider (IDP) and the SAML login fails, Yext displays an error screen.
If users have trouble accessing your organization with SSO, check the login history to determine whether the issue is a SAML assertion error or a configuration problem.
- If it's an assertion-related error, use the SAML Assertion Validator to identify the specific assertion problem, then work with your identity provider to confirm both the SAML assertion and your SSO configuration are valid.
- Confirm that the username field for each user matches their username in the identity provider. The username must match the
NameIDvalue passed in the SAML assertion.