Skip to main content

Jamf Connect - Okta Secondary access denied via OIDC lookup

Updated over 3 weeks ago

Issue Description

Jamf Connect Login (JC:L) window displays: "Secondary access denied via OIDC lookup. Contact your IT administrator for assistance."

Troubleshooting Steps

Removed the "OIDCSecondaryLoginClientID" preference key from the Jamf Connect Login (JC:L) profile.

Please note: The "OIDCSecondaryLoginClientID" preference key is optional.

This key helps prevent multiple user logins when using Jamf Connect by controlling the number of accounts a user can create across devices.

Users assigned to the "OIDCSecondaryLoginClientID" application can create multiple accounts on different endpoints. However, if a user is not part of this scope and tries to create another account, they will receive a "Secondary access denied" error.

Did this answer your question?