[keycloak-user] facing issue while having the single sign on flow

vandana thota vandana0242 at gmail.com
Fri Jul 20 16:44:15 EDT 2018


ERROR [org.keycloak.services.resources.IdentityBrokerService] (default
task-25) invalidRequestMessage

We are configuring the Single sign on for the application deployed on the
Wildfly instance by having keycloak , external IDP , SAML 2.0 standards
.Below is the flow .

There was an error at the flow while we are trying this flow . PFA It has
pictorial representation of the flow .
Wildfly app or servlet container -> (SP) SAML request to IdP -> Keycloak ->
(identify Okta IdP... may or may not need a username) -> (SP SAML Request
to Okta) -> Okta IdP (May or may not need user to login depends on if they
have an active okta session or not) -> IdP SAML Response -> Keycloak -> IdP
SAML Response Wildfly app / servlet container
-------------- next part --------------
A non-text attachment was scrubbed...
Name: WildflyKeycloakOktaSequence.png
Type: image/png
Size: 31308 bytes
Desc: not available
Url : http://lists.jboss.org/pipermail/keycloak-user/attachments/20180720/30a40b8c/attachment-0001.png 


More information about the keycloak-user mailing list