oracle single sign on

Jessica L E Marshall 20 Reputation points
2025-09-23T19:21:00.4833333+00:00

i am trying to login on oracle for my job but it is giving me error message saying that single sign on has to be disable please help

Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
0 comments No comments
{count} votes

Answer accepted by question author
  1. Monalisha Jena 3,680 Reputation points Microsoft External Staff Moderator
    2025-09-24T04:59:34.8933333+00:00

    Hello Jessica L E Marshall,

    Welcome to Microsoft Q&A Platform. Thank you for reaching out & hope you are doing well.

    You're trying to log in to Oracle for work and encountering an error that says "single sign-on has to be disabled." If the Oracle application is managed by your organization, you cannot fix this issue yourself. It requires an IT administrator to correct the Oracle application's configuration. We would recommend you contact your company's IT support and relay the following information:

    The Immediate Workaround: You can ask if a separate URL or sign-in page exists for logging in without using SSO.

    The Administrative Fix: The IT administrator needs to verify and correct the SAML trust relationship between the Oracle application and the corporate Identity Provider (IdP). The most common causes are:

    • Expired SAML Signing Certificate: The certificate used to secure the communication between the IdP (e.g., Microsoft Entra ID) and the Oracle application has expired. The administrator must download the new certificate from the IdP and upload it to the Oracle application's settings.
    • Incorrect Reply URL or Entity ID: The Reply URL (Assertion Consumer Service URL) or Entity ID configured in the IdP's enterprise application settings may not exactly match the values configured in the Oracle application. Even a minor typo will cause a login failure.
    • Authentication Policy Misconfiguration: The Oracle application's authentication policy might be configured to only allow local user accounts, not federated accounts. The administrator needs to adjust this policy to enable federated authentication.

    You can refer below document for better understanding, and it can help the IT team:
    https://learn.microsoft.com/en-us/entra/identity/saas-apps/oracle-fusion-erp-tutorial

    https://learn.microsoft.com/en-us/entra/identity/saas-apps/oracle-idcs-for-ebs-tutorial

    https://learn.microsoft.com/en-us/entra/identity/enterprise-apps/debug-saml-sso-issues

    https://learn.microsoft.com/en-us/troubleshoot/entra/entra-id/app-integration/troubleshoot-sign-in-saml-based-apps

    Kindly let us know if the above helps or you need further assistance on this issue. 

    Please "Accept the answer" if the information helped you and 'upvote' for it. This will help us and others in the community as well. Happy to help!

    Regards,

    Monalisha


1 additional answer

Sort by: Most helpful
  1. Deleted

    This answer has been deleted due to a violation of our Code of Conduct. The answer was manually reported or identified through automated detection before action was taken. Please refer to our Code of Conduct for more information.


    Comments have been turned off. Learn more

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.