Symptom
- IAS tenant acts as a proxy to a Corporate Identity Provider (Microsoft Entra ID).
- Issuer Name is configured according to Configure Different Trust Configurations for the Same Identity Authentication.
- User Authentication fails. In the Troubleshooting log, the following error is displayed:
"Service Provider has received SAML2Assertion from Identity Provider [https://sts.windows.net/<Entity ID>/] that has invalid signature. "
Read more...
Environment
Identity Authentication Service
Product
Identity Authentication 1.0
Keywords
invalid signature, Issuer Name, Authentication Error, SAML2Assertion, Identity Provider, IAS, Microsoft Entra ID, Corporate Identity Provider, Signature not valid. , KBA , BC-IAM-IDS , Identity Authentication Service , Problem
About this page
This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).Search for additional results
Visit SAP Support Portal's SAP Notes and KBA Search.