Friends,
We use SiteMinder federation Services for SAML integrations.
I am trying to setup SP Initiated authentication with Tableu Server. Entities are created, partnership is enabled with HTTP-POST binding. When user access service, they get redirected to IDP SSO Service via POST.
Header shows: POST /affwebservices/public/saml2sso HTTP/1.1
There is no Query String. POSTData shows relaystate and SAMLRequest parameter. Decoding SAMLRequest points to correct SPID and some other info.
SPS fails with a 403.
FWS log shows:
[07/14/2016][03:03:56][1184][2593799024][29e87cee-cec29aa8-5f309a1e-9821db22-1d03afdd-3b][SSO.java][doPost][SAML2 Single Sign-On Service received POST request.]
[07/14/2016][03:03:56][1184][2593799024][29e87cee-cec29aa8-5f309a1e-9821db22-1d03afdd-3b][FWSBase.java][doRequestLog][Requesting Host: x.x.x.x. Requesting Host IP: x.x.x.x Request protocol: HTTP/1.1 Request was secure: true Authentication type: null]
[07/14/2016][03:03:56][1184][2593799024][29e87cee-cec29aa8-5f309a1e-9821db22-1d03afdd-3b][SSO.java][doPost][POST data: ]
[07/14/2016][03:03:56][1184][2593799024][29e87cee-cec29aa8-5f309a1e-9821db22-1d03afdd-3b][SSO.java][parseMessage][Exception while parsing message.]
[07/14/2016][03:03:56][1184][2593799024][29e87cee-cec29aa8-5f309a1e-9821db22-1d03afdd-3b][SSO.java][doPost][Transaction with ID: 29e87cee-cec29aa8-5f309a1e-9821db22-1d03afdd-3b failed. Reason: SAML2_UNSUPPORTED_POST_REQUEST]
[07/14/2016][03:03:56][1184][2593799024][29e87cee-cec29aa8-5f309a1e-9821db22-1d03afdd-3b][SSO.java][doPost][SAML2 Single Sign-On Service does not support POST requests.]
[07/14/2016][03:03:56][1184][2593799024][29e87cee-cec29aa8-5f309a1e-9821db22-1d03afdd-3b][SSO.java][doPost][Ending SAML2 Single Sign-On Service request processing with HTTP error 403]
[07/14/2016][03:03:56][1184][2593799024][29e87cee-cec29aa8-5f309a1e-9821db22-1d03afdd-3b][ErrorRedirectionHandler.java][redirectToErrorPage][Sending HTTP Error 403 ]
[07/14/2016][03:04:11][1184][2592803696][][CustomPostPageCache][performUpdate][Checking for updates]
Appreciate if anyone can throw some light on this.