Error occured in RSA Federated Identity Manger (FIM) 4.1 'Unable to verify the signature value' error when processing assertion
Originally Published: 2013-07-04
Article Number
Applies To
RSA Product/Service Type: RSA Federated Identity Manger (FIM)
RSA Version/Condition: 4.1
ComponantSpace SAML v2.0 Single Sign-On (SSO) Component for .NET
Issue
Error message in system.out log
Unable to verify the signature value: SAMLSignedObject.verify() detected an invalid signature profile, com.rsa.fim.exception.CryptoUtilException: Unable to verify the signature value: SAMLSignedObject.verify() detected an invalid signature profile
Error message in debug.log
util.crypto.dsig.verify.error, com.rsa.fim.saml.InvalidCryptoException: SAMLSignedObject.verify() detected an invalid signature profile.
Cause
The SAML 2.x specification lists only three acceptable transforms. If a transform other than the listed ones is used this error is generated.
5.4.4 Transforms
Signatures in SAML messages SHOULD NOT contain transforms other than the enveloped signature transform (with the identifier http://www.w3.org/2000/09/xmldsig#enveloped-signature) or the exclusive canonicalization transforms (with the identifier http://www.w3.org/2001/10/xml-exc-c14n# or http://www.w3.org/2001/10/xml-exc-c14n#WithComments).
Verifiers of signatures MAY reject signatures that contain other transform algorithms as invalid.
Resolution
Related Articles
System.DllNotFoundException: Unable to load DLL 'km' 36Number of Views SecurID Authentication API service down on RSA Authentication Manager 8.x 114Number of Views RSA Identity Governance and Lifecycle IBM Lotus Notes (Domino) collector does not collect group data. 50Number of Views Attributes are missing from the SAML response sent by the RSA SecurID Access Identity Router to Microsoft AD FS 42Number of Views How to temporarily enable HTTP login to RSA Identity Governance & Lifecycle 426Number of Views
Trending Articles
Troubleshooting RSA SecurID Access Identity Router to RSA Authentication Manager test connection failures RSA SecurID Software Token 5.0.2 Downloads for Microsoft Windows RSA Authentication Manager 8.9 Release Notes (January 2026) RSA Governance & Lifecycle 8.0.0 Administrators Guide Quick Setup Guide - Passwordless Authentication in Windows MFA Agent for Active Directory
Don't see what you're looking for?