SSO Troubleshooting: User Is Not Assigned To A Role For The Application
Learn what to do if you receive this error
Error
Error text might include messages such as:
user is not assigned to a role for the application(Microsoft Azure identity provider)account isn't linked to <<organization>>403 app_not_enabled_for_user "Service is not enabled for this user."(Google identity provider)
Note: These messages originate from your identity provider and vary by product. The examples above are common cases.
This error appears on your identity provider’s page (not on an Everfi Foundry page) after the user successfully authenticates, and it indicates the user is not assigned to the application or lacks the required permissions.
Explanation
Most identity providers require users or user groups to be explicitly assigned to a service provider application like Foundry. If you see this error, it means the user authenticated successfully but does not have the necessary privileges in your identity provider to access Foundry.
Resolution
In your identity provider, confirm that the appropriate security groups are assigned to the Foundry application and that the affected user belongs to one of those groups if they should have access.