
JuanS.86776 (Avalon Healthcare Solutions) asked a question.
Hello Community,
First time here.
I am getting the following error message when a client is attempting to SSO into my application. in the SAML, the X509 Certificate (<X509Certificate> in the SAML) is the same x509 value as the one he sent me to upload.
"The digital signature in the SAML response did not validate with the Identity Provider's certificate"
Can someone help shine what to do next. I have exhausted all options I can think of.
I will add, due to this being an IdP initiated flow, the client told me he did not need my cert. Not sure if this is correct.
Best,

Natalia,
I was able to fix the issue, it looks like they were not signing the assertion. They were just sending the cert in the response.