# "The token was not valid.","friendlyErrorType":"Error","errorData"

**URL:** <https://developer.sailpoint.com/discuss/t/the-token-was-not-valid-friendlyerrortype-error-errordata/199634>\
**Category:** SHF Discussion and Questions\
**Tags:** identity-security-cloud\
**Created:** [March 17, 2026, 12:58am UTC](https://developer.sailpoint.com/discuss/t/the-token-was-not-valid-friendlyerrortype-error-errordata/199634 "2026-03-17T00:58:42Z")\
**Posts on this page:** 8\
**Page:** 1

<div class="post-metadata">

**Author:** ![mgrant](https://avatars.discourse-cdn.com/v4/letter/m/cc9497/32.png) [@mgrant](https://developer.sailpoint.com/discuss/u/mgrant)\
**Post date:** [March 17, 2026, 12:58am UTC](https://developer.sailpoint.com/discuss/t/the-token-was-not-valid-friendlyerrortype-error-errordata/199634/1 "2026-03-17T00:58:42Z")

</div>

Team,

Has anyone come across this error:

`"The token was not valid.","friendlyErrorType":"Error","errorData"`

I have followed the instructions in the documentation but I still get the error. Any thoughts?

> **[Custom Authentication](https://documentation.sailpoint.com/connectors/webservices/help/integrating_webservices/idn_config_for_custom_authentication.html)**
>
> SailPoint Connectors Documentation

---

<div class="post-metadata">

**Author:** ![trettkowski](https://sea1.discourse-cdn.com/sailpoint/discuss/user_avatar/developer.sailpoint.com/trettkowski/32/36103_2.png) [@trettkowski](https://developer.sailpoint.com/discuss/u/trettkowski)\
**Post date:** [March 17, 2026, 1:07am UTC](https://developer.sailpoint.com/discuss/t/the-token-was-not-valid-friendlyerrortype-error-errordata/199634/2 "2026-03-17T01:07:37Z")

</div>

Hi @mgrant

Can you show us your custom authentication configuration?

---

<div class="post-metadata">

**Author:** ![lampard08](https://sea1.discourse-cdn.com/sailpoint/discuss/user_avatar/developer.sailpoint.com/lampard08/32/32646_2.png) [@lampard08](https://developer.sailpoint.com/discuss/u/lampard08)\
**Post date:** [March 17, 2026, 1:21am UTC](https://developer.sailpoint.com/discuss/t/the-token-was-not-valid-friendlyerrortype-error-errordata/199634/3 "2026-03-17T01:21:29Z")

</div>

That is response from your target source. can you post on explain your auth model here.

---

<div class="post-metadata">

**Author:** ![mgrant](https://avatars.discourse-cdn.com/v4/letter/m/cc9497/32.png) [@mgrant](https://developer.sailpoint.com/discuss/u/mgrant)\
**Post date:** [March 17, 2026, 11:33am UTC](https://developer.sailpoint.com/discuss/t/the-token-was-not-valid-friendlyerrortype-error-errordata/199634/4 "2026-03-17T11:33:45Z")

</div>

Hi Tyler and Chelsea

Thanks for chiming in. Here you go my friend. Attempting to set up a Hot Docs Advanced Webservice. It works in Postman but does not in ISC.

```auto

{
“description”: “H”,
“owner”: {
“type”: “IDENTITY”,
“id”: “[REDACTED_ID]”,
“name”: “J”
},
“cluster”: {
“type”: “CLUSTER”,
“id”: “[REDACTED]”,
“name”: “VAx”
},
“accountCorrelationConfig”: null,
“accountCorrelationRule”: null,
“managerCorrelationMapping”: null,
“managerCorrelationRule”: null,
“beforeProvisioningRule”: null,
“schemas”: [
{
“configuration”: {},
“type”: “CONNECTOR_SCHEMA”,
“id”: “[REDACTED]”,
“name”: “account”
},
{
“configuration”: {},
“type”: “CONNECTOR_SCHEMA”,
“id”: “[REDACTED]”,
“name”: “group”
}
],
“passwordPolicies”: null,
“features”: [
“AUTHENTICATE”,
“UNLOCK”
],
“type”: “Web Services”,
“connector”: “web-services-angularsc”,
“connectorClass”: “sailpoint.connector.webservices.WebServicesConnector”,
“connectorAttributes”: {
“clientCertificate”: null,
“deltaAggregationEnabled”: false,
“accesstoken”: null,
“throwProvBeforeRuleException”: true,
“connectionType”: “direct”,
“client_id”: null,
“numPartitionThreads”: null,
“enableProvisioningFeature”: false,
“password”: null,
“client_secret”: null,
“clientKeySpec”: null,
“saml_headers_to_exclude”: null,
“sourceConnected”: true,
“saml_headers”: null,
“private_key”: null,
“version”: “v2”,
“labels”: [
“standard”
],
“slpt-source-diagnostics”: “{"connector":"web-services-angularsc","status":"SOURCE_STATE_UNCHECKED_SOURCE_NO_ACCOUNTS","healthy":false,"healthcheckDisabled":true,"healthcheckCount":270,"lastHealthcheck":1773745170647,"statusChanged":1773151297969,"redactions":{"sourceId":"[REDACTED]"}}”,
“formPath”: null,
“refresh_token”: null,
“cloudCacheUpdate”: 1773708911618,
“saml_request_body”: null,
“authenticationMethod”: “No Auth”,
“httpCookieSpecsStandard”: “true”,
“connectorName”: “Web Services”,
“enableStatus”: null,
“since”: “2026-03-10T14:01:37.969Z”,
“status”: “SOURCE_STATE_UNCHECKED_SOURCE_NO_ACCOUNTS”,
“supportsDeltaAgg”: “true”,
“resourceOwnerUsername”: null,
“oAuthJwtHeader”: null,
“customaccesstoken_CA”: null,
“enableHasMore”: false,
“isGetObjectRequiredForPTA”: true,
“timeoutInSeconds”: “60”,
“genericWebServiceBaseUrl”: “https://[REDACTED]/api/rest/v2.0”,
“resourceOwnerPassword”: null,
“connectionParameters”: [
{
“httpMethodType”: “POST”,
“pagingInitialOffset”: 0,
“sequenceNumberForEndpoint”: “1”,
“uniqueNameForEndPoint”: “Get-Token”,
“rootPath”: “$”,
“body”: {
“jsonBody”: “{\n "ClientName": "[REDACTED]",\n "PrincipalName": "svc",\n "PrincipalPassword": "$application.principalPassword_CA$"\n}”,
“bodyFormat”: “raw”
},
“customAuthUrl”: “https://[REDACTED]/auth/Authorize/ServicePrincipalLogIn”,
“paginationSteps”: null,
“responseCode”: [
“2**”
],
“resMappingObj”: {
“customaccesstoken_CA”: “$.accessToken”
},
“contextUrl”: null,
“pagingSize”: 50,
“curlEnabled”: false,
“header”: {
“Accept”: “application/json”,
“Content-Type”: “application/json”
},
“operationType”: “Custom Authentication”,
“xpathNamespaces”: null,
“parentEndpointName”: null
},
{
“httpMethodType”: “GET”,
“pagingInitialOffset”: 0,
“sequenceNumberForEndpoint”: “2”,
“uniqueNameForEndPoint”: “Get-Users”,

```

---

<div class="post-metadata">

**Author:** ![lampard08](https://sea1.discourse-cdn.com/sailpoint/discuss/user_avatar/developer.sailpoint.com/lampard08/32/32646_2.png) [@lampard08](https://developer.sailpoint.com/discuss/u/lampard08)\
**Post date:** [March 17, 2026, 12:30pm UTC](https://developer.sailpoint.com/discuss/t/the-token-was-not-valid-friendlyerrortype-error-errordata/199634/5 "2026-03-17T12:30:49Z")

</div>

i guess this is the response after authentication right? I am looking for how are you getting the auth token. if you can show screenshots and some explanation of the flow.

---

<div class="post-metadata">

**Author:** ![mgrant](https://avatars.discourse-cdn.com/v4/letter/m/cc9497/32.png) [@mgrant](https://developer.sailpoint.com/discuss/u/mgrant)\
**Post date:** [March 17, 2026, 12:37pm UTC](https://developer.sailpoint.com/discuss/t/the-token-was-not-valid-friendlyerrortype-error-errordata/199634/6 "2026-03-17T12:37:24Z")

</div>

Ah - here you go - below is the source

 ![image](https://global.discourse-cdn.com/sailpoint/original/3X/b/f/bf2334498dde3276049c7f17661e8698022c0935.png)

And this is Postman

 ![image](https://global.discourse-cdn.com/sailpoint/original/3X/e/2/e2e8c87a722e948b9cf7a793ba472367a94570a9.png)

 ![image](https://global.discourse-cdn.com/sailpoint/original/3X/2/d/2d94178e8b1f10ee053179f812214a807c26a25a.png)

 ![image](https://global.discourse-cdn.com/sailpoint/original/3X/f/2/f2023617d5c9885f12084c61ba159087a07703ff.png)

---

<div class="post-metadata">

**Author:** ![lampard08](https://sea1.discourse-cdn.com/sailpoint/discuss/user_avatar/developer.sailpoint.com/lampard08/32/32646_2.png) [@lampard08](https://developer.sailpoint.com/discuss/u/lampard08)\
**Post date:** [March 17, 2026, 12:59pm UTC](https://developer.sailpoint.com/discuss/t/the-token-was-not-valid-friendlyerrortype-error-errordata/199634/7 "2026-03-17T12:59:30Z")

</div>

ok. in your custom auth http auth, catch the response with response mapping as :

schmaattribute : accessToken

attribute path:

lets assume this path will be “accessToken” if the response is simple for example like this :

{

“accessToken“: “abababababbabnnmmjhdhvh“

}

then create an other http operation for test connection.

give your base context and etc. there in header pass the above as :

header name: “Authorization“

header value: “Bearer $application.accessToken$“

note: in the above, \<$application.accessToken$\> refers to the response mapping from your custom auth operation.

everytime you run the test connection, it will create a new session by calling your custom auth and gets new token.

lets try this then we can move to the next operation.

---

<div class="post-metadata">

**Author:** ![system](https://global.discourse-cdn.com/sailpoint/original/2X/f/f2136700ed5e3703e0b85e02f6be799dacca7735.png) [@system](https://developer.sailpoint.com/discuss/u/system)\
**Post date:** [May 16, 2026, 1:00pm UTC](https://developer.sailpoint.com/discuss/t/the-token-was-not-valid-friendlyerrortype-error-errordata/199634/8 "2026-05-16T13:00:23Z")

</div>

This topic was automatically closed 60 days after the last reply. New replies are no longer allowed.
