000022315 - FIM error Recipient string does not match the Relying Party's Recipient string

Document created by RSA Customer Support Employee on Jun 16, 2016Last modified by RSA Customer Support Employee on Apr 21, 2017
Version 2Show Document
  • View in full screen mode

Article Content

Article Number000022315
Applies ToRSA Federated Identity Manager (FIM) 2.5
Microsoft Windows 2000 SP4
IssueFIM error Recipient string does not match the Relying Party's Recipient string
Error: "Error 500 - Internal Server Error. The server encountered the following unexpected condition: Error in RSA Federated Identity Manager: Error encountered in Relying Party servlet: com.rsa.csf.common.exceptionbase.CsfApplicationException: Error in Relying Party while processing Asserting Party response: nested exception is: com.rsa.csf.techservice.saml.opensaml.SAMLException: The samlp:Response Recipient string (http://huber1-lap.na.rsa.net:7001/samlrelyingparty/RP) does not match the Relying Party's Recipient string (http://jackson.na.rsa.net:7001/samlrelyingparty/RP)." in web browser when using RSA Federated Identity Manager (FIM)
CauseThis message occurs when the Recipient Identifier URI defined on the Relying Party Settings page does not match the one in the assertion received from the AP. These two settings must match.
ResolutionTo resolve this issue, correct the configuration to ensure that the Recipient Identifier URIs match.
Legacy Article IDa27876

Attachments

    Outcomes