Scenario: A Citrix Architect has deployed an authentication setup with a ShareFile load-balancing virtual server. The NetScaler is configured as the Service Provider and Portalguard server is utilized as the SAML Identity Provider. While performing the functional testing, the architect finds that after the users enter their credentials on the logon page provided by Portalguard, they get redirected back to the Netscaler Gateway page at uri /cgi/samlauth/ and receive the following error.
''SAML Assertion verification failed; Please contact your administrator.''
The events in the /var/log/ns.log at the time of this issue are as follows:
Feb 23 20:35:21
parsed attribute NameID, value is nameid''
Feb 23 20:35:21
algorithms differ, expected SHA1 found SHA256''
Feb 23 20:35:44
parsed attribute NameID, value is named
Feb 23 20:35:44
algorithms differ, expected SHA1 found SHA256''
Feb 23 20:37:55
parsed attribute NameID, value is nameid''
Feb 23 20:37:55
algorithms differ, expected SHA1 found SHA256''
What should the architect change in the SAML action to resolve this issue?
Currently there are no comments in this discussion, be the first to comment!