Okta Workflows Tips #79: How to fix the “Cannot activate the flow. Webhook registration failed (403 Forbidden error)”

Short and handy Okta Workflows tips and tricks. Read the full series.

If you get this error:

Cannot activate the flow. Webhook registration failed (403 Forbidden error)

In Okta Workflows, this error almost always comes down to the required Admin role or missing API scopes.

Reauthorize a connection.
Reauthorize a connection.

Admin role

Ensure the Okta connection in Workflows is authorized by a Super Admin, as this is required to manage event hooks for event-triggered flows.

Scopes

Confirm that the connection includes the following scopes:

  1. okta.eventHooks.read
  2. okta.eventHooks.manage

You must set the scopes in the Okta Workflows OAuth application, and also when creating a new connection from Workflows.

Reauthorize

Once you have verified the permissions and scopes, reauthorize the connection in the Connections tab. Finally, return to your flow and toggle it to On to trigger the webhook registration.

More resources


Okta Workflows resources

Leave a Reply

Discover more from Max Katz

Subscribe now to keep reading and get access to the full archive.

Continue reading