SAP Knowledge Base Article - Preview

2882992 - Error "SAML provider does not exist" due to wrong representation of certificate attributes

Symptom

  • You are configuring SAML between HANA and Microsoft Power BI.
  • You are importing the IdP's X.509 certificate into the file-based certificate collection sapsrv.pse.
  • The indexserver trace file shows that the value for the identity provider in the SAML assertion is missing, i.e. <saml2:Issuer></saml2:Issuer>
  • The indexserver trace file shows that the certificate being used in the SAML assertion is successfully verified, i.e. "Certificate verification succeeded!"
  • Some attributes in the Subject and/or Issuer of the client certificate being used in the SAML assertion differ from those maintained in SYS.SAML_PROVIDERS for the same identity provider.
  • Authentication fails with "SAML provider does not exist".


Read more...

Environment

  • Microsoft Power BI
  • SAP HANA 1.0 SPS12
  • SAP HANA 2.0  

Product

SAP HANA 1.0, platform edition ; SAP HANA, platform edition 2.0

Keywords

HANA, SAML, Power BI, X.509, certificate, assertion, indexserver, sapsrv.pse, Subject, Issuer, crypto, authentication, OpenSSL, CommonCryptoLib , KBA , HAN-DB-SEC , SAP HANA Security & User Management , Problem

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP ONE Support launchpad (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.