Skip to main content
NetApp Knowledge Base

System Manager rejects SAML authentication because IdP metadata does not contain email address or phone number

Views:
277
Visibility:
Public
Votes:
1
Category:
oncommand-system-manager
Specialty:
om
Last Updated:

Applies to

  • System Manager 9.7
  • Microsoft ADFS

Issue

  • Unable to authenticate via SAML to System Manager because the IdP metadata does not contain an email address
  • The /mroot/etc/shibboleth/shibd.log contains the following errors:

[kern_shibd:info:9583] ERROR OpenSAML.MetadataProvider.XML : metadata instance failed manual validation checking: EmailAddress must have TextContent

[kern_shibd:info:9583] WARN Shibboleth.SessionInitiator.SAML2 [1] [default]: unable to locate metadata for provider (https://sts.iconplc.com/adfs/services/trust)

Unknown or Unusable Identity Provider The identity provider supplying your login credentials is not authorized for use with this service or does not support the necessary capabilities

 

CUSTOMER EXCLUSIVE CONTENT

Registered NetApp customers get unlimited access to our dynamic Knowledge Base.

New authoritative content is published and updated each day by our team of experts.

Current Customer or Partner?

Sign In for unlimited access

New to NetApp?

Learn more about our award-winning Support

 

******************************************************* *******************************************************