Problem Statement: The "not assigned access" error is generated and displayed by the Identity Provider (IdP), not by Document360, so the end user sees only the IdP's raw error text with no indication of what caused it or who can fix it. Since the fix (assigning the user/group in the IdP) can only be performed by the customer's IdP admin, end users receiving this error currently have no way to know that Document360 support cannot resolve it and that they need to contact their own organization's IdP administrator.
Suggested Enhancement: Where technically feasible, add a Document360-branded interstitial or a "Need help signing in?" link on the redirect/landing experience for SSO failures, pointing affected users to the relevant troubleshooting article and clarifying that this class of error must be resolved by their organization's IdP admin, not by Document360 support.
Customer Benefit: Reduces support tickets raised against Document360 for an issue that Document360 cannot fix, and gets end users to the right internal contact (their own IT/IdP admin) faster.