Sign SAML Requests

XMLWordPrintable

    • 26

      Problem Summary:

      Although the official SAML standards do not require it, many IdPs require a signed AuthNRequest for security reasons.

      Thereby, authentication requests to IdPs that require the signature will fail with this error:

      ERROR [http-nio-8017-exec-11] [onelogin.saml2.authn.SamlResponse] isValid The status code of the Response was not Success, was urn:oasis:names:tc:SAML:2.0:status:Requester -> Signature required
      

      Customers cannot integrate such IDPs with Atlassian Cloud as the request always fails unless they tweak the IDP logic to not check for signed SAML requests.

      Solution:
      Optionally provided an SP SAML certificate to the IDPs that need the SAML requests to be signed

            Assignee:
            Sudesh Peram
            Reporter:
            Ulka
            Votes:
            47 Vote for this issue
            Watchers:
            45 Start watching this issue

              Created:
              Updated: