SAP Knowledge Base Article - Preview

2693814 - Service Provider does not match specified audience in the SAML2Assertion

Symptom

SAML 2.0 authentication when using SAP Cloud Platform Identity Authentication Service fails and errors similar to below are recorded in the Troubleshooting log:

*******************
#ERROR#com.sap.security.saml2.idp.endpoints.sso.ACSEndpoint#
Authentication error. Reason: [Service Provider does not match specified audience in the SAML2Assertion.]
...
*******************


Read more...

Environment

SAP Cloud Platform Identity Authentication Service

Product

SAP Business Technology Platform all versions ; SAP Cloud Identity Services all versions

Keywords

sso single-sign-on login.failed artifact JAVA Service Provider SP Identity Provider IdP Issue Instant is not valid SAP Production ABAP R/3 ERP SRM CRM ERP PPM SEM APO XI PI PORTAL Test development QA SAML 2.0 SAML2Assertion Warning saml2.sp.ResponseValidationService SAML2Assertion Service Provider SAMLREQUEST
, KBA , BC-IAM-IDS , Identity Authentication Service , BC-NEO-SEC-IAM , Authentication, Authorization(Cloud Platform Neo) , Problem

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.