Total Pageviews
Friday, September 3, 2021
command to create system scripts in OpenIDM
Wednesday, September 1, 2021
forgerock openidm to get header information via curl
Openidm Syncing OpenIDM with LDAP cn configuration steps
Friday, August 20, 2021
AWS and ADFS integration error "principal exists outside the account of the Role being assumed"
Tuesday, August 17, 2021
ADFS and AWS integration error
Tuesday, August 3, 2021
Github and ADFS SAML integration error method="GitHub::Authentication::SAML.rails_authenticate" ip=yourip at="failure - Invalid SAML response" login=_unknown errors='["Digest mismatch", "No assertion found", "Audience is invalid. Audience attribute does not match
ADFS and Github integration error
Error on github side
method="GitHub::Authentication::SAML.rails_authenticate" ip=yourip at="failure - Invalid SAML response" login=_unknown errors='["Digest mismatch", "No assertion found", "Audience is invalid. Audience attribute does not match
Solution:
The issue was Github Single Sing on URL and/or Issuer url was not correct, make sure to compare the value of IDP ACS and entityid with GitHub configuration.
github integration with ADFS using SAML "failure - Invalid SAML response" '["Digest mismatch"]'
ADFS and Github SAML integration error
Error
"failure - Invalid SAML response" '["Digest mismatch"]'
Solution:
This error is a SAML integration error and it can occur during any application SAML integration. The real cause of this error is due to the Certificate miss-match. The issue was Github had a different certificate than the IDP certificate. make sure you download the correct certificate from the ADFS side or if you don't know which certificate, you can copy the certificate from the IDP file and upload the certificate (after decrypting) to the GitHub side. Also, make sure the IDP encryption is checked on the GitHub site and the certificate is showing correct values after uploading into GitHub.
other issues could be, the user does not exist on the GitHub side(user has to be present in Github users directory) or the right roles are not being passed.
Wednesday, June 16, 2021
GCP Network tiers selection
Premium
hight cost.
Traffic leaves the GCP network closer to the destination.
Less distance and hope
More secure and faster transportation.
Standard
Lest expensive
Traffic leaves the Google network near the Source.
Most of the traffic stays on the public network.
Monday, June 14, 2021
KeyClock initial username and password
after unzipping the Keyclock folder go to the following url and enter the username and password. whatever you entered for the first time will be your admin username and password.
Wednesday, June 9, 2021
GCP Folders definition
Projects
Tuesday, May 18, 2021
ADFS 4 and AWS SAML integration in Gov cloud error Specified provider doesn't exist
ADFS 4 integration with AWS in gov cloud
Specified provider doesn't exist (Service: AWSOpenIdDiscoveryService; Status Code: 400; Error Code: AuthSamlManifestNotFoundException; Request ID: b1234-5446-468b-127-e9876e; Proxy: null) (Service: AWSSecurityTokenService; Status Code: 400; Error Code: InvalidIdentityToken; Request ID: e859daed-2997-123255-b6d8-a6898723a2; Proxy: null). Please try again.