09-16-2025 10:39 PM
I am trying to login into this cisco security cloud control but i received this error.
What can i do for this type of error?
If there are any more information i need to provide please tell me.
Solved! Go to Solution.
09-17-2025 01:39 AM
If you get an HTTP 400 error when testing your IdP integration, try the following troubleshooting steps.
Ensure the email domain of the user account you're using to test matches your claimed domain.
example.com, then users must sign in with <username>@example.com and not <username>@signon.example.com.Users must authenticate through the integrated identity provider. An HTTP 400 error is returned if a user signs in using the Cisco or Microsoft social sign-in options or attempts to sign in directly through Okta.
The value of the <NameId> element in the SAML response must be an email address. The email address must match the email specified in the user's SAML attributes. See SAML Response Requirements for details.
The SAML response from your IdP to Security Cloud Sign On includes the required user attributes: firstName, lastName, and email. See SAML Response Requirements for details.
SAML response from your identity provider must be signed with the SHA-256 signature algorithm. Security Cloud Sign On rejects assertions that are unsigned or signed with another algorithm.
source: Cisco Security Cloud Control Administration Guide - Troubleshooting SAML errors
09-17-2025 01:17 AM
Try clearing cookies and/or try a incognito window.
09-17-2025 01:25 AM
We tried but it doesnt seem to work.
09-17-2025 01:39 AM
If you get an HTTP 400 error when testing your IdP integration, try the following troubleshooting steps.
Ensure the email domain of the user account you're using to test matches your claimed domain.
example.com, then users must sign in with <username>@example.com and not <username>@signon.example.com.Users must authenticate through the integrated identity provider. An HTTP 400 error is returned if a user signs in using the Cisco or Microsoft social sign-in options or attempts to sign in directly through Okta.
The value of the <NameId> element in the SAML response must be an email address. The email address must match the email specified in the user's SAML attributes. See SAML Response Requirements for details.
The SAML response from your IdP to Security Cloud Sign On includes the required user attributes: firstName, lastName, and email. See SAML Response Requirements for details.
SAML response from your identity provider must be signed with the SHA-256 signature algorithm. Security Cloud Sign On rejects assertions that are unsigned or signed with another algorithm.
source: Cisco Security Cloud Control Administration Guide - Troubleshooting SAML errors
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide