SAP Knowledge Base Article - Preview

3484368 - SAML SSO failed with HTTP 403 via Web Dispatcher Access due to service /sap/saml2/sp/acs/ is blocked

Symptom

SAML2 SSO failed with the following error when accessing with SAP Wed Dispatcher.


Our service is not available at the moment. Please try again later.

URL showing in the error page is:

https://host:port/sap/saml3/acs/<client number>


The HTTP 403 error will be detected in the client trace log, for example, HTTPWatch trace log.

In the Web Dispatcher trace log, the following permission denied error is showing for acs service.


ERROR => Permission denied for /sap/saml2/sp/acs/<client number>


Read more...

Environment

SAP S/4HANA
SAP Netweaver Systems

Product

SAP NetWeaver Application Server for ABAP 7.2 ; SAP NetWeaver Application Server for ABAP for SAP S/4HANA Cloud 1911 ; SAP S/4HANA 2022 ; SAP S/4HANA 2023 ; SAP S/4HANA 2025

Keywords

Our service is not available at the moment, Please try again later, SAML2, icmandir, /sap/saml2/sp/acs/, acs, 403 Forbidden, Web Dispatcher, Permission denied , KBA , BC-SEC-LGN-SML , SAML 2.0 for ABAP , BC-CST-WDP , Web Dispatcher , Problem

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.