Integration Identity Portal with Keycloack via SAML gives error "Invalid Requester"
search cancel

Integration Identity Portal with Keycloack via SAML gives error "Invalid Requester"

book

Article ID: 432153

calendar_today

Updated On:

Products

CA Identity Suite

Issue/Introduction

Integration of Identity Portal as SP with Keycloack as Identity Provider via SAML gives an error.

The IP portal is configured with Request Signing Algorithm=RSA-SHA256 and Request Signing Key is turn ON.

The IP returns the error " Invalid Requester" indicates signing process failure. However, when turn off the Request Signing key from the Keycloack, it works fine and user able to login to IP portal.

Environment

Identity Portal vApp 14.5

Resolution

Open a new case with support and reference DE659928 and DE661447. Then receive and apply vApp patch HF_IP-14.5.0-20260220140226-SAML_ENCRYPTION_FIX.tgz.gpg.