Symptom
When trying to authenticate with SAML 2.0 SSO, the process fails and asks for user credentials . Upon checking the SAML trace, the following exception is shown:
SAML20 SP (client <Client Number>): Exception raised:
SAML20 SAML20 CX_SAML20_CORE: The validation of message 'Response' failed. Long text: The validation of message 'Response' failed.
...
SAML20 Caused by: CX_SAML20_ASSERTION: Entity <Name of the entity defined in the Service Provider configuration> is not defined in the element 'AudienceRestriction'.
Read more...
Environment
- SAP NetWeaver Application Server ABAP
- ABAP Platform
- SAP S/4HANA
Product
Keywords
AudienceRestriction, SAML, SAML2, SAML 2.0, Entity, Provider, sec_diag_tool trace, The validation of message 'Response' failed. , KBA , BC-SEC-LGN-SML , SAML 2.0 for ABAP , Problem
About this page
This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).Search for additional results
Visit SAP Support Portal's SAP Notes and KBA Search.
SAP Knowledge Base Article - Preview