SSO User is unable to login to Rally, receives error; "Sign On Error. No value found for SAML_SUBJECT when building the assertion from name/value pairs"
search cancel

SSO User is unable to login to Rally, receives error; "Sign On Error. No value found for SAML_SUBJECT when building the assertion from name/value pairs"

book

Article ID: 219659

calendar_today

Updated On:

Products

Rally SaaS

Issue/Introduction

A user unable to login to Rally via AuthHub SSO. 

 

Error received:

Sign On Error

No value found for SAML_SUBJECT when building the assertion from name/value pairs:

{SAML_AUTHN}CTX=urn:oasis:names:tc:

SAML:2.0:ac:classes:unspecified,

SAML_NAME_FORMAT=urn:oasis:names:t

c SAML:1.1:nameid-format:unspecified}

Please contact your system administrator

for assistance regarding this error.

 

 

Resolution

These attributes should be sent in the SAML response to AuthHub and must not be blank:

    1. firstName
    2. lastName
    3. Subject (This is the actual Rally username in email address format.)
    4. email (This is a separate attribute from Subject and may or may not be the same value.)

Additional Information

Check from the User SAML logs whether the token send has "samlsub= emailid" if the value is missing the user cannot login to Rally.