{"id":187,"date":"2021-05-04T11:44:27","date_gmt":"2021-05-04T11:44:27","guid":{"rendered":"http:\/\/collabeer.com\/?p=187"},"modified":"2021-05-04T11:44:27","modified_gmt":"2021-05-04T11:44:27","slug":"sso-issue-after-certificate-renewal-on-adfs-server-error-while-processing-saml-response","status":"publish","type":"post","link":"https:\/\/collabeer.com\/?p=187","title":{"rendered":"SSO Issue after Certificate Renewal on ADFS Server &#8220;Error while processing SAML Response&#8221;"},"content":{"rendered":"\n<p>From time to time it happens that the certificates on the ADFS server are renewed. Cisco then has a problem with Secondary Token Signing and the metadata file has to be adjusted manually.<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"265\" src=\"https:\/\/collabeer.com\/wp-content\/uploads\/2021\/05\/image-1024x265.png\" alt=\"\" class=\"wp-image-188\" srcset=\"https:\/\/collabeer.com\/wp-content\/uploads\/2021\/05\/image-1024x265.png 1024w, https:\/\/collabeer.com\/wp-content\/uploads\/2021\/05\/image-300x78.png 300w, https:\/\/collabeer.com\/wp-content\/uploads\/2021\/05\/image-768x199.png 768w, https:\/\/collabeer.com\/wp-content\/uploads\/2021\/05\/image-1536x398.png 1536w, https:\/\/collabeer.com\/wp-content\/uploads\/2021\/05\/image-2048x530.png 2048w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p>To fix this export the certificate and open it with a text editor and copy the content (hint: just copy the end of the certificate)<\/p>\n\n\n\n<p>Then open the MetaData file and search for the &#8220;copied&#8221; certificate.<\/p>\n\n\n\n<p>Delete everything: <\/p>\n\n\n\n<p><code>&lt;KeyDescriptor use=\"signing\"><strong>....<\/strong>&lt;\/KeyDescriptor> <\/code><\/p>\n\n\n\n<p>To make it clear delete this (inlcuding KeyDescriptor):<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"523\" src=\"https:\/\/collabeer.com\/wp-content\/uploads\/2021\/05\/image-1-1024x523.png\" alt=\"\" class=\"wp-image-189\" srcset=\"https:\/\/collabeer.com\/wp-content\/uploads\/2021\/05\/image-1-1024x523.png 1024w, https:\/\/collabeer.com\/wp-content\/uploads\/2021\/05\/image-1-300x153.png 300w, https:\/\/collabeer.com\/wp-content\/uploads\/2021\/05\/image-1-768x392.png 768w, https:\/\/collabeer.com\/wp-content\/uploads\/2021\/05\/image-1.png 1364w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p>Then import the modified MetaData file to the UC servers and run the SSO test.<\/p>\n\n\n\n<p>In most cases, the token signing certificate appears 3x in the MetaData file. That means you have to delete this part 3x from the Metadata file.<\/p>\n\n\n\n<p><\/p>\n","protected":false},"excerpt":{"rendered":"<p>From time to time it happens that the certificates on the ADFS server are renewed. Cisco then has a problem with Secondary Token Signing and the metadata file has to be adjusted manually. To fix this export the certificate and open it with a text editor and copy the content (hint: just copy the end [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_monsterinsights_skip_tracking":false,"_monsterinsights_sitenote_active":false,"_monsterinsights_sitenote_note":"","_monsterinsights_sitenote_category":0,"footnotes":""},"categories":[1],"tags":[],"class_list":["post-187","post","type-post","status-publish","format-standard","hentry","category-uncategorized"],"_links":{"self":[{"href":"https:\/\/collabeer.com\/index.php?rest_route=\/wp\/v2\/posts\/187","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/collabeer.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/collabeer.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/collabeer.com\/index.php?rest_route=\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/collabeer.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=187"}],"version-history":[{"count":1,"href":"https:\/\/collabeer.com\/index.php?rest_route=\/wp\/v2\/posts\/187\/revisions"}],"predecessor-version":[{"id":190,"href":"https:\/\/collabeer.com\/index.php?rest_route=\/wp\/v2\/posts\/187\/revisions\/190"}],"wp:attachment":[{"href":"https:\/\/collabeer.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=187"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/collabeer.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=187"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/collabeer.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=187"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}