Introduction
Users may be unable to sign in through Single Sign On for AP Automation and Procurement, receiving the message server error (500). In most cases this is because the Client Secret in Azure has expired.
Before you raise a ticket
First check with your IT department whether the Client Secret has expired. If it has, a new Client Secret must be created in Azure. These new details can then be shared with the Support department.
Checking whether the Client Secret has expired
- Go to Azure Portal.
- Go to Azure Active Directory - Entra ID.
- Select App registrations.
- Find the application used for the SSO connection.
- Open the app and go to Certificates & secrets.
- Check the Expires column for the Client Secret.
Creating a new Client Secret
If the Client Secret has expired, first complete steps 1 to 5 above. Then continue from Certificates & secrets:
- Click New Client Secret.
- Enter a clear description, for example SSO koppeling Secret value.
- Choose a validity period, preferably 12 or 24 months.
- Click Add.
- Copy the generated value immediately and store it. It is not shown again later.
Raising a ticket with ISPnext
Raise a ticket through the Helpcenter and ask ISPnext to update the Client Secret in the SSO configuration. Support then tests the sign-in connection again and responds through the ticket.
From now on, renew the Client Secret before the current one expires, to prevent future problems.