Okta SSO Group Sync

Hi, we are a new enterprise using SonarCloud and have not been able to get SSO with Okta working. We have carefully followed the documentation but have not had success. When a new user attempts SSO they are successfully logged into SonarCloud however they receive an error saying they cannot be added to the enterprise. The specific errror is:

User uuid 1234 is not allowed to get enterprise uuid 4567
(I have removed the actual UUID’s from the error message)

The current documentation about group sync seems to be out of date compared to what we see in the Okta UI. While I believe we have set it up successfully if I was to guess that is the source of our error as users never get added to the group.

I see many threads on this topic but most seem to revolve around looking at logs or tracing request which as far as I know we cannot do with the cloud version of sonar.

Hi @tfredricks,

There seems to be an issue with the groups configuration.

Have you created groups at the organization level in SonarQube Cloud that match exactly the names of groups in you application in Okta?