cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

SAML2 Single SingOn

imran_khatyan
MEGA Partner
MEGA Partner

Hello, 

Getting the following error and ends in access_denied any idea: 

The signature verified correctly with the key contained in the signature, but that key is not trusted

regards, 

29 Replies

ibra22
Super Contributor

I found this endpoint in the docs of how to configure ADFS http://{servername}/UAS/AuthServices/Acs, is it the ACS endpoint should be mentioned in the metadata file?

ibra22
Super Contributor

Could you tell me what the entity ID should be? besides the ACS, I know it's where in SP the IDP should redirect the user after authentication but what it should be in case of MEGA HOPEX?

ibra22
Super Contributor

Hi and thank you for your reply,

Could you tell me more about the enitiy id and ACS endpoint? What are they? and how to get them?

Hello, 

In this case, you can always use the following free utility to generate your XML. The most important thing you must fill in is the entity id and ACS End-Point. 

https://www.samltool.com/sp_metadata.php

regards,  

Hello @ibra22 

Here is some documentation provided by Mega regarding the metadata file requirements. In the below URL you can find requirements for SAML2 and Open ID Connect. 

https://doc.mega.com/hopex-v4-en/index.html#page/Deploy/HOPEX_Unified_Authentication_Service.Unified...

As well as this section of the documentation referencing how to configure ADFS Server.

https://doc.mega.com/hopex-v4-en/index.html#page/Deploy/HOPEX_Unified_Authentication_Service.SAML2_A... 

I hope this helps 🙂 

Kind regards,

ibra22
Super Contributor

Thank you Imran,

Appreciate if you could help me with below:

- We need to implement SSO with IAM and they asking about service provider (MEGA) metadata file

- You're saying it needs to be generated from AD, but how AD could know information about HOPEX

- Attached is a sample of metadata file for another system, they shared it with us to build one similar

- Could you please let me know how to generate such? Do I have to contact AD and they'd generate one similar?

It needs to be generated from the active directory server. 

Hi Imran,

Could you please let me know how to generate that XML metadata file from HOPEX?

imran_khatyan
MEGA Partner
MEGA Partner

Requested IDP Admins to create the metadata file again, that solved the issue if anybody else interested,