Login with SSO via ADFS fails with "[400] Unable to authenticate. Check your credentials. If problem persists, contact your administrator"
search cancel

Login with SSO via ADFS fails with "[400] Unable to authenticate. Check your credentials. If problem persists, contact your administrator"

book

Article ID: 417794

calendar_today

Updated On:

Products

VMware vCenter Server

Issue/Introduction

When attempting SSO login via ADFS, the ADFS login page stalls. When redirected to vCenter, the error "[400] Unable to authenticate. Check your credentials. If problem persists, contact your administrator" appears.

In vsphere_client_virgo.log, apigw.log, or trustmanagement-svcs.log:   Error 526

Environment

vCenter 8.x

Cause

Invalid certificate chain for ADFS certificate in vCenter Certificate Management. 

Resolution

Add the valid Root and Intermediate certificates for the ADFS certificate to vCenter > Administration > Certificate Management > Trusted Roots.

Restart vCenter services.