06-20-2022 01:16 PM
I am trying to enable SAML SSO on one of our lab servers and no matter what I do I cannot get the "Enable SAML SSO" button to work. I am logged in as an administrator, and I have tried multiple administrator accounts, but none of them work.
Version 12.5.1.14900-45
06-20-2022 01:41 PM
By the look of your screenshot it looks like you have not completed the export of the meta data. This is the very first thing you need to do to enable SSO. The rest of the steps are outlined in documentation. Advise you to review it.
06-20-2022 01:42 PM
I have exported the metadata multiple times. Nothing changes.
06-20-2022 01:55 PM - edited 06-20-2022 01:57 PM
That’s not really what your screenshot shows. It states meta data never exported.
But however, let’s go ahead with this. Have you got this meta data setup as a trust in your IdP and then imported the meta date from the IdP on your system?
06-20-2022 01:58 PM
Yes, I have. The reason it looks like I haven't exported it is I have been working on this process for over a week now and have had to restart my browser a few times. I am thinking that something is not working with my LDAP setup because I can no longer find my SSO Admin user (that I used for my other lab system) in LDAP on this box. Is my thought correct that if I cannot find a LDAP administrator I will not be able to enable SSO?
06-20-2022 02:04 PM
Not AFAIK off. It sounds like you’re entire system is misbehaving quite oddly. I would think that you need TAC involved in this.
06-20-2022 02:07 PM
The problem with this is it's a lab system, they tend to not like to help us (lab is in one of the systems we develop against). It would probably be faster for me to rebuild it than to get TAC to help me figure out the issue.
06-20-2022 11:48 PM
We also have lab instances and we never had any issue with getting support from TAC.
06-20-2022 11:56 PM
Even if you restart your browser or the system it should still show that you have done the export. Out of curiosity, have you tried with any of the other options for what certificate to use for the meta data export? We have always used the Tomcat cert and one per cluster instead of the options that you have selected in your screenshot.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide