Symptom
- In SAC > Administration > Security, the toggle to turn on "dynamic user creation" when using a custom SAML IdP does not stay turned on even when saving the settings
- Issue occurred after migrating their tenant from one datacenter to another (AWS to Azure cloud)
- Checking the checkbox for 'dynamic user creation' saving and leaving the page and coming back shows that checkbox is unchecked again
- The settings for "dynamic user creation" does not persist and stay saved
- Dynamic User creation does not work
- SAML SSO works fine
- Custom IdP works fine and can verify user attribute and upload IdP metadata successfully -- Only the Dynamic User creation toggle does not work
Environment
CF tenants
SAC Version 2024.2
Hosted on AWS then migrated to Azure datacenter
Reproducing the Issue
1. In SAC > Administration > Security, enable a custom SAML IdP
2. Check the box to enable "dynamic user creation"
3. Click "save"
4. exit the page or refresh the page
5. Observe that the "dynamic user creation" is now unchecked
Cause
An issue in the tenant's schema in user management service
Resolution
Issue was forwarded to Development (FPA137)
After Development team finished cleaning up the schema in the user management service in the backend, the issue was resolved
Keywords
Dynamic user creation, saml, sac, analytics, cloud, mapping, save, persist, bug, issue, defect, ops, operations, fpa137, backend, sso, aut, authentication, auth, aut-sam, , KBA , LOD-ANA-AUT , SAC Authentication / Login , Problem