Symptom
- Identity Authentication (IAS) is acting as a proxy, the authentication happens through a corporate identity provider.
- Subject Name Identifier is set to ${corporateIdP.<corporateIdP attribute>}.
- Identity Federation - Use Identity Authentication user store is enabled.
- Authentication is failing with such user, and the Troubleshooting Log is showing the below error message:
"SAML configuration error. User [null] does not have an attribute [${corporateIdP.<corporateIDP attribute>}] or fallback attribute [xxx] set Caused by: Name id attribute ${corporateIdP.<corporateIDP attribute>} must match at least one valid and supported user attribute value."
Read more...
Environment
Identity Authentication
Product
Identity Authentication 1.0
Keywords
IAS, corporateIdP, advanced, nameid, Name id attribute, Subject Name Identifier, must match at least one valid and supported user attribute value , KBA , BC-IAM-IDS , Identity Authentication Service , Problem
About this page
This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).Search for additional results
Visit SAP Support Portal's SAP Notes and KBA Search.
SAP Knowledge Base Article - Preview