Environments identity and access management > Work Portal access > SAML
Troubleshoot Saml Configurations. Problem with signature verification or saml 2.0 message decryption: Update the edge sso service provider certificate at the saml idp:
Environments identity and access management > Work Portal access > SAML
Save your configuration, then click on the test button in the test this configuration box at the top of the page. Look for a saml post in the developer console pane. Most saml integration issues occur as a result of misconfiguration. If you use another version, you might need to adapt the steps accordingly. You will then receive a summary of test results. Verify both the configurations in the portal match what you have in your app. Select accept requests and select the default application and the response protocol used by that application, and (optionally) specify any additional parameters you want to be passed to the application. Security diagnostic tool + sm50/sec_trace_analyzer Or 2) the remoteauthtimeout on the fortigate is too low, and the authentication session is getting timed out before the the login process can be completed (default value is 5 seconds, and timeout messages can be observed in samld debugs). Press f12 to start the developer console.
If there are issues with saml configuration on any node, you can disable saml authentication and then reenable saml authentication. Problem with signature verification or saml 2.0 message decryption: 1) the idp configuration has the incorrect urls set for the fortigate sp, resulting in saml responses getting misdirected. Please see the saml.config.template in secret server's root. Compare the details entered in the saml configuration closely with those provided by meisterplan and the idp, and ensure they are identical. Most saml integration issues occur as a result of misconfiguration. Read through machine users to create machine users. Security diagnostic tool + sm50/sec_trace_analyzer Errors related to misconfigured apps. Ensure that the elements and attributes names and value are valid for saml configuration. When troubleshooting saml configuration or login issues, be sure to enable debug mode for the saml module.