SAML Certificate's Signature can be part of Assertions which IDM was not able to handle.
search cancel

SAML Certificate's Signature can be part of Assertions which IDM was not able to handle.

book

Article ID: 372978

calendar_today

Updated On:

Products

CA Identity Suite

Issue/Introduction

After update Certificate in SAML Idenitity Provider (as SSO) IM yet continues authenticating and the expected result if that before we update the certificate in IM side this authentication fails.

Environment

Identity Manager 14.5 on Vapp

Cause

Root cause: In the few case Certificate's Signature can be part of Assertions which IDM was not able to handle.

Resolution

 

Solution: In the few case Certificate's Signature can be part of Assertions which IDM was not able to handle so we added conditions and redirected to samlerror.jsp page with error message.