Skip to main content
Question

SSO enablement causes strange login workflow and Admin settings lockout

  • November 18, 2025
  • 2 replies
  • 11 views

Our Box account was recently administered by a user ending in “@relateddomain.com” and had access to all of the admin settings in Box. This was one of the proxy addresses for that user in our Entra tenant.


After enabling SSO and provisioning, the user associated with that “@relateddomain.com” email address was provisioned by into Box by Entra as a separate user. However, their UserPrincipalName ends in “@maindomain.com” which forces the SSO login workflow. 

Currently, when our admin tries to login to the initial “@relateddomain.com” address he is able to use the user:password method, but once the user:pass is verified it seems like the SAML login workflow is followed and he is instead logged in to the other provisioned account with less admin rights. This happens in an Incognito browser as well. This effectively means we cannot reach the settings to allow any users to bypass SSO or disable it entirely. 

How can we regain access to our admin settings in order to fix this?

Thanks

2 replies

Rona Box
  • Community Manager
  • 754 replies
  • November 18, 2025

Hi ​@thezman007

Welcome to Box Community, and we’re glad to assist! 

To get a closer look, I opened a new case and a member from the Box Product Support team will reach out to you soon. 

 

Thanks for posting, and we hope to get this sorted out very soon! 


  • Author
  • New Participant
  • 1 reply
  • November 18, 2025

Thank you ​@Rona Box,

I feel like there is some way for me to do that but didn’t see a way to reach the support team from the web or my Box account. I appreciate the assist!