SAP Knowledge Base Article - Preview

2542838 - SAML2Exception: The request content length exceed the max allowed content length

Symptom

  • SAML is configured for authentication in AS Java
  • SAML responses after the login are being truncated and the following warning appears in the traces:

DoS attack check failed while extracting SAML2 relay state
[EXCEPTION]
com.sap.security.saml2.lib.common.SAML2Exception: The request content lenght (X) exceed the max allowed content length (Y)
at com.sap.security.saml2.lib.common.SAML2Utils.checkRequestContentLengthHeader(SAML2Utils.java:468)


Read more...

Environment

SAP NetWeaver Application Server Java

Product

SAP NetWeaver Application Server for Java all versions

Keywords

SAML 2.0, SAML2, Service Provider ACS endpoint has no default entrance location configured, 500 internal server error, /saml2/sp/acs , KBA , BC-JAS-SEC-SML , JAVA SAML 1.1 and 2.0 , BC-JAS-SEC-LGN , Logon, SSO , Problem

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.