# Get 404: Not Found error on SSO login

**URL:** <https://forum.pritunl.com/t/get-404-not-found-error-on-sso-login/1387>\
**Category:** Pritunl VPN\
**Created:** [September 13, 2023, 9:40am UTC](https://forum.pritunl.com/t/get-404-not-found-error-on-sso-login/1387 "2023-09-13T09:40:03Z")\
**Posts on this page:** 10\
**Page:** 1

<div class="post-metadata">

**Author:** ![hennning](https://forum.pritunl.com/letter_avatar_proxy/v4/letter/h/82dd89/32.png) [@hennning](https://forum.pritunl.com/u/hennning)\
**Post date:** [September 13, 2023, 9:40am UTC](https://forum.pritunl.com/t/get-404-not-found-error-on-sso-login/1387/1 "2023-09-13T09:40:03Z")

</div>

I’m setting up a new Prítunl installation for a client were Azure SSO is required for connecting the VPN.

I’ve setup a server with SSO requirement enabled.  
When I connect it redirects me to a website and if I’m logged in with the correct account everything works and VPN is connected.

But when it redirects me to a browser were I’m logged in with another Azure SSO account I get an expected error that the user is not found.  
In the pritunl client I get a blue message allowing me to copy the SSO link myself.  
If I copy that and paste in another browser I get error 404: Not Found.

This will become an issue since the customer have other 3rd party users that will connect with Pritunl and they will most likley be connected to another organization in their browser.

I’m not sure on how to troubleshoot this or provide logs for further troubleshooting.

---

<div class="post-metadata">

**Author:** ![zach](https://forum.pritunl.com/user_avatar/forum.pritunl.com/zach/32/1105_2.png) [@zach](https://forum.pritunl.com/u/zach)\
**Post date:** [September 14, 2023, 10:40pm UTC](https://forum.pritunl.com/t/get-404-not-found-error-on-sso-login/1387/2 "2023-09-14T22:40:29Z")

</div>

There may be some settings in Azure to prevent the authentication from getting cached and displaying the login prompt every time which would allow the user to select a different account. I’m not sure where the option is. The user should be signed into the Azure account that is associated with the Pritunl profile in use.

---

<div class="post-metadata">

**Author:** ![hennning](https://forum.pritunl.com/letter_avatar_proxy/v4/letter/h/82dd89/32.png) [@hennning](https://forum.pritunl.com/u/hennning)\
**Post date:** [September 15, 2023, 6:38am UTC](https://forum.pritunl.com/t/get-404-not-found-error-on-sso-login/1387/3 "2023-09-15T06:38:40Z")

</div>

I’m not sure how an Azure cache would solve the 404 error?  
I get that error from the Pritunl server.

I’m sure you understand there’s situations were the user is not signed in with the same Azure account on the browser. As in this example where 3rd party consultants wants to connect to a customers Pritunl VPN. Or an employee working for multiple companies and having that perticular browser logged in to another company Azure.

And there is a “Copy SSO Link” message in the client allowing you to paste it into a different browser or and InPrivate session, the link just isn’t working.

---

<div class="post-metadata">

**Author:** ![zach](https://forum.pritunl.com/user_avatar/forum.pritunl.com/zach/32/1105_2.png) [@zach](https://forum.pritunl.com/u/zach)\
**Post date:** [September 21, 2023, 1:51am UTC](https://forum.pritunl.com/t/get-404-not-found-error-on-sso-login/1387/4 "2023-09-21T01:51:09Z")

</div>

What URL path is the 404 error occurring on?

The link is only valid once, if you are opening it multiple times it will return 404.

If the browser has the wrong Azure account it will return an error. Azure automatically completes the sign-in without prompts so you would need to sign out of the wrong account before attempting the connection.

---

<div class="post-metadata">

**Author:** ![hennning](https://forum.pritunl.com/letter_avatar_proxy/v4/letter/h/82dd89/32.png) [@hennning](https://forum.pritunl.com/u/hennning)\
**Post date:** [September 21, 2023, 6:33am UTC](https://forum.pritunl.com/t/get-404-not-found-error-on-sso-login/1387/5 "2023-09-21T06:33:44Z")

</div>

Ok, thanks for the clarification.

It would be great to have an option not to auto open the primary browser when connecting, to allow you to copy the link into another browser with your correct account.

---

<div class="post-metadata">

**Author:** ![zach](https://forum.pritunl.com/user_avatar/forum.pritunl.com/zach/32/1105_2.png) [@zach](https://forum.pritunl.com/u/zach)\
**Post date:** [September 23, 2023, 1:38am UTC](https://forum.pritunl.com/t/get-404-not-found-error-on-sso-login/1387/6 "2023-09-23T01:38:04Z")

</div>

It will only use the default browser. I will add an option in the next release to the advanced settings to prevent the browser from opening automatically.

---

<div class="post-metadata">

**Author:** ![elkh510](https://forum.pritunl.com/user_avatar/forum.pritunl.com/elkh510/32/973_2.png) [@elkh510](https://forum.pritunl.com/u/elkh510)\
**Post date:** [January 28, 2026, 2:24pm UTC](https://forum.pritunl.com/t/get-404-not-found-error-on-sso-login/1387/7 "2026-01-28T14:24:36Z")

</div>

Hi Zach,

Thanks for the clarification.  
I wanted to follow up on this:

> _“I will add an option in the next release to the advanced settings to prevent the browser from opening automatically.”_

Has this option been added in any recent release?  
If not, is it still planned or on the roadmap?

This would be very useful, especially in SAML/SSO setups where the default browser is not the intended one and the SSO link is single-use.

Thanks!

---

<div class="post-metadata">

**Author:** ![zach](https://forum.pritunl.com/user_avatar/forum.pritunl.com/zach/32/1105_2.png) [@zach](https://forum.pritunl.com/u/zach)\
**Post date:** [January 29, 2026, 3:14pm UTC](https://forum.pritunl.com/t/get-404-not-found-error-on-sso-login/1387/8 "2026-01-29T15:14:12Z")

</div>

This feature was never added, I will look into getting this into the next release.

---

<div class="post-metadata">

**Author:** ![zach](https://forum.pritunl.com/user_avatar/forum.pritunl.com/zach/32/1105_2.png) [@zach](https://forum.pritunl.com/u/zach)\
**Post date:** [March 8, 2026, 11:48am UTC](https://forum.pritunl.com/t/get-404-not-found-error-on-sso-login/1387/9 "2026-03-08T11:48:02Z")

</div>

This feature is now available in the latest release in the advanced settings labeled _Disable browser open_.

---

<div class="post-metadata">

**Author:** ![elkh510](https://forum.pritunl.com/user_avatar/forum.pritunl.com/elkh510/32/973_2.png) [@elkh510](https://forum.pritunl.com/u/elkh510)\
**Post date:** [April 30, 2026, 9:38am UTC](https://forum.pritunl.com/t/get-404-not-found-error-on-sso-login/1387/10 "2026-04-30T09:38:58Z")

</div>

Hi Zach,

Thanks for the update.

We’ve checked, and the option is indeed available in the latest release under advanced settings (“Disable browser open”).

Everything works as expected on our side - really appreciate you adding this feature!

Thanks again!
