Security

Azure AD SAML not working : Why is verification of SAML assertion using the IDP's certificate provided failing?

ayush1906
Communicator

Hi All,

have generated Azure AD SAML XML and certificate using Splunk Blog:

 https://www.splunk.com/en_us/blog/tips-and-tricks/configuring-microsoft-s-azure-security-assertion-m... 

 

After loading up XML in a totally new instance, it gives the below error:

 Verification of SAML assertion using the IDP's certificate provided failed. Error: failed to verify signature with certVerification of SAML assertion using the IDP's certificate provided failed. Error: failed to verify signature with cert

 

 In Azure portal can see the certificate is active:

 

Capture.JPG

 

not sure where to look further..... any leads here......


@tkomatsubara_sp @richgalloway @tshah-splunk 

Labels (4)
0 Karma
1 Solution

ayush1906
Communicator

our team had created a portal, which interacted with Azure Portal, looks like some payload mismatch was causing certificate issue.

 

On configuring directly in Azure Portal, it worked as expected. 🙂

View solution in original post

0 Karma

pravinpawar
Observer

Hi All,

I'm currently facing the same issue. Any idea what was wrong with payload?

When I upload DEV Azure AD tenant metadata SSO is working as expected.

But it's not working for STAGE and PROD tenant and showing below error:

Verification of SAML assertion using the IDP's certificate provided failed. Error: failed to verify signature with cert

0 Karma

ayush1906
Communicator

our team had created a portal, which interacted with Azure Portal, looks like some payload mismatch was causing certificate issue.

 

On configuring directly in Azure Portal, it worked as expected. 🙂

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Character substitutions with Regular Expressions

This challenge was first posted on Slack #puzzles channelFor BORE at .conf23, we had a puzzle question which ...

Splunk Community Badges!

  Hey everyone! Ready to earn some serious bragging rights in the community? Along with our existing badges ...

[Puzzles] Solve, Learn, Repeat: Matching cron expressions

This puzzle (first published here) is based on matching timestamps to cron expressions.All the timestamps ...