How to resolve the "Unexpected Error. Go back to Login" when using Spotfire Statistica Data Entry External Authentication

How to resolve the "Unexpected Error. Go back to Login" when using Spotfire Statistica Data Entry External Authentication

book

Article ID: KB0070003

calendar_today

Updated On:

Products Versions
Spotfire Statistica 14.2 and 14.3

Description

PREREQUSITES

1.  Statistica Data Entry installed
2.  External Authentication configuration complete (see page 22 through 25 of  https://docs.tibco.com/pub/stat-all-servers/14.2.0/doc/pdf/SPOT_stat-all-servers_14.2.0_admin_data_entry.pdf?id=3)

Sequence of events

The error occurrs only after the user authentication via the OpenID provider has completed successfully.  Below is an example of the sequence of events:

1.  Statistica Data Entry - External Authentcation option is available,  External Authentcation clicked:

image.png

2.  Login to the OpenID application, in this example, okta is used.  Enter username and password, then click the "Sign in" button:

image.png

3. Authentication completes with a token as displayed in the URL yet the the "Unexpected error" appears:

image.png

4.  For the user, the OpenID system log shows SUCCESS:

image.png



Causes
One know cause is the user has no user permissions in Statistica Enterprise Manager:



image.png

Environment

OS: Windows

Resolution

1.  Add the user to a group with with at least Data Entry (DE) permissions.   For example jack2_trades was added to the CMO 2 group which has these permissions:

image.png
 
Note the group MUST be manually created in Enterprise Manager.  


2.  Add the user to the OpenID group, which is created in Okta, and the Application must be assigned to the group:

image.png


image.png
 
3.  If not already, change Permissions >>Default group to the matching group in Okta and click Save.   In this case it is CMO 2:
 
image.png
 


Note:  In most cases, the external user group name in the OpenID application must match the user group name in Statistica Enterprise, e.g. the CMO 2 group that exists in Okta must be created in Enterprise Manager.  



Issue/Introduction

This article details the "Unknown error" result when using okta for External Authentication.