Principal propagation is set in SAP Cloud Connector. The below error entries are visible in the Cloud Connector logs:
com.sap.core.connectivity.tunnel.client.sso.SSOClientProcessor#tunnel-client-x-y#0xaaaaaaaa#SSO token validation failed: com.sap.core.connectivity.tunnel.client.sso.InvalidSSOTokenException: Unable to validate SAML2 assertion Caused by: com.sap.security.saml2.sp.sso.exception.BadCredentialsException: The issuer of the received SAML2Assertion is not a trusted Identity Provider. There is no configuration for IdP ' https://accounts.sap.com'
Synchronization of SSO assertion providers from SAP Cloud Platform is not possible. Establish connection to SAP Cloud Platform first.
SAP Cloud Platform
SAP Cloud Connector
KBA , BC-MID-SCC , SAP Cloud Connector On-Demand/On-Premise Connectivity , BC-NEO-CON , Neo to On-premise Connectivity service , Problem
About this pageThis is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP ONE Support launchpad (Login required).
Search for additional results
Visit SAP Support Portal's SAP Notes and KBA Search.