When enabling Signed Requests, Okta IdP has a requirement to include a NameIDPolicy attribute on the SAML Request.
Enabling this feature will result on the following error message displayed:
From Okta:
"When Signed Requests is enabled, the SAML Request must include a NameIDPolicy"
Our SAML implementation does not include NameIDPolicy so this is currently unsupported.
Additionally, Okta requires the following:
"When NameIdPolicy is included in the SAML Request, the Name ID format must match it."
The above information can be found here:
Application Integration Wizard SAML field reference | Okta Identity Engine
At the moment there are no plans to support these attributes on the Signals Platform.
Comments
0 comments
Article is closed for comments.