VCF Operations login failure due to unsupported SSO certificate format
search cancel

VCF Operations login failure due to unsupported SSO certificate format

book

Article ID: 442577

calendar_today

Updated On:

Products

VCF Operations

Issue/Introduction

Users are unable to log in to VCF Operations and receive the following authentication error:
Authentication was unsuccessful. Verify your credentials or contact your administrator if the issue persists.

This issue prevents users from accessing the VCF Operations UI even when valid credentials are provided.

Environment

  • VCF Operations 9.0.x
  • VCF Identity Broker 9.0.x

Cause

The issue is caused by the use of an unsupported Single Sign-On (SSO) certificate format (.crt or .cer) during the SSO configuration process. VCF SSO requires the certificate to be provided in a .pem format. When an unsupported certificate format is used, authentication requests fail, resulting in login issues.
This requirement is documented in the Configure Active Directory as an Identity Provider Using AD/LDAP guide and also while configuring VCF SSO.

Resolution

Reconfigure the VCF SSO using the .pem certificate file. Refer: Configure a New VCF Single Sign-On for a VCF Instance