Identity Portal login authentication via SiteMinder fails
search cancel

Identity Portal login authentication via SiteMinder fails

book

Article ID: 413062

calendar_today

Updated On:

Products

CA Identity Suite

Issue/Introduction

When attempting to access the Sigma portal login URL, which is SiteMinder-protected. The portal is throwing an error "Request Failed: Please contact your system administrator for support."

In the SiteMinder logs, we observed a status of "authorized" during the attempt. When temporarily disabling the SM integration in IP, the login works fine.

The Identity Portal (Sigma) log shows Invalid CSRF Token found:

[0m [32m11:29:05,911 DEBUG [org.springframework.security.web.csrf.CsrfFilter] (default task-6) Invalid CSRF token found for http://sample_server.com/sigma/rest/protected/clientData/object/def/guiconf?v=############
[0m [32m11:29:05,911 DEBUG [org.springframework.security.web.access.AccessDeniedHandlerImpl] (default task-6) Responding with 403 status code

Environment

Identity Portal, protected by Siteminder SSO.

Resolution

 Disable CSRF within the Identity Portal configuration. Make sure "Enable CSFR" is unchecked.