SAP Knowledge Base Article - Preview

2613465 - Authentication failed. Reason: SAML2Assertion received could not be decrypted - SAP Cloud Platform Neo


  • You have an external Identity Provider set up for SAP Cloud Platform Neo, or an Identity Authentication tenant that delegates authentication to a Corporate Identity Provider.
  • The users are able to authenticate, but they do not get access to the Service Provider resources (HTTP 500 error is displayed).
  • The logs of the application contain the message in subject.



SAP Cloud Platform, Neo environment


Identity Authentication all versions ; SAP Business Technology Platform all versions


ssl saml2.0 EncryptedAssertion , KBA , BC-NEO-SEC-IAM , Authentication, Authorization(Cloud Platform Neo) , Problem

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP ONE Support launchpad (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.