FIM error Recipient string does not match the Relying Party's Recipient string
2 years ago
Originally Published: 2005-09-13
Article Number
000058197
Applies To
RSA Federated Identity Manager (FIM) 2.5
Microsoft Windows 2000 SP4
Issue
FIM error Recipient string does not match the Relying Party's Recipient string
Error: "Error 500 - Internal Server Error. The server encountered the following unexpected condition: Error in RSA Federated Identity Manager: Error encountered in Relying Party servlet: com.rsa.csf.common.exceptionbase.CsfApplicationException: Error in Relying Party while processing Asserting Party response: nested exception is: com.rsa.csf.techservice.saml.opensaml.SAMLException: The samlp:Response Recipient string (http://huber1-lap.na.rsa.net:7001/samlrelyingparty/RP) does not match the Relying Party's Recipient string (http://jackson.na.rsa.net:7001/samlrelyingparty/RP)." in web browser when using RSA Federated Identity Manager (FIM)
Cause
This message occurs when the Recipient Identifier URI defined on the Relying Party Settings page does not match the one in the assertion received from the AP. These two settings must match.
Resolution
To resolve this issue, correct the configuration to ensure that the Recipient Identifier URIs match.