<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Keycloak and SAML - Validation error in Integration, Extension &amp; APIs</title>
    <link>https://community.qlik.com/t5/Integration-Extension-APIs/Keycloak-and-SAML-Validation-error/m-p/2465492#M20804</link>
    <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.qlik.com/t5/user/viewprofilepage/user-id/192618"&gt;@LorisLombardo87&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;After investigation, we found out that this is due to Keycloak sending the "Role" attribute with different value several times instead of sent as an array, if you remove the Role attribute from the SAML response in Keycloak then it should work.&lt;/P&gt;</description>
    <pubDate>Wed, 26 Jun 2024 00:31:18 GMT</pubDate>
    <dc:creator>Damien_V</dc:creator>
    <dc:date>2024-06-26T00:31:18Z</dc:date>
    <item>
      <title>Keycloak and SAML - Validation error</title>
      <link>https://community.qlik.com/t5/Integration-Extension-APIs/Keycloak-and-SAML-Validation-error/m-p/2454810#M20623</link>
      <description>&lt;P&gt;Hi everybody,&lt;/P&gt;
&lt;P&gt;after unsuccessfully tried to implement JWT for authorization we are now trying with SAML and Keycloak.&lt;/P&gt;
&lt;P data-unlink="true"&gt;we have followed this &lt;A href="https://community.qlik.com/t5/Official-Support-Articles/Qlik-Cloud-How-to-set-up-Keycloak-as-a-SAML-Identity-Provider/ta-p/2429079" target="_self"&gt;article&lt;/A&gt;&amp;nbsp;but when we try to validate it gives back the following error&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="LorisLombardo87_0-1716307284500.png" style="width: 400px;"&gt;&lt;img src="https://community.qlik.com/t5/image/serverpage/image-id/166533i71683931A92BCC60/image-size/medium?v=v2&amp;amp;px=400" role="button" title="LorisLombardo87_0-1716307284500.png" alt="LorisLombardo87_0-1716307284500.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;if i look at the SAML assertion i can see the attributes are there:&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="LorisLombardo87_1-1716307466267.png" style="width: 400px;"&gt;&lt;img src="https://community.qlik.com/t5/image/serverpage/image-id/166534i1E5F4A03ED7026CC/image-size/medium?v=v2&amp;amp;px=400" role="button" title="LorisLombardo87_1-1716307466267.png" alt="LorisLombardo87_1-1716307466267.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;is there anything I can check to verify if the SAML request is in the correct format?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks,&lt;BR /&gt;Loris&lt;/P&gt;</description>
      <pubDate>Tue, 21 May 2024 16:05:52 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Integration-Extension-APIs/Keycloak-and-SAML-Validation-error/m-p/2454810#M20623</guid>
      <dc:creator>LorisLombardo87</dc:creator>
      <dc:date>2024-05-21T16:05:52Z</dc:date>
    </item>
    <item>
      <title>Re: Keycloak and SAML - Validation error</title>
      <link>https://community.qlik.com/t5/Integration-Extension-APIs/Keycloak-and-SAML-Validation-error/m-p/2455420#M20640</link>
      <description>&lt;P&gt;Can you compare your configuration in Keycloak and Qlik Cloud against the details in the following article?&lt;BR /&gt;&lt;A href="https://community.qlik.com/t5/Official-Support-Articles/Qlik-Cloud-How-to-set-up-Keycloak-as-a-SAML-Identity-Provider/ta-p/2429079" target="_blank"&gt;https://community.qlik.com/t5/Official-Support-Articles/Qlik-Cloud-How-to-set-up-Keycloak-as-a-SAML-Identity-Provider/ta-p/2429079&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;
&lt;P&gt;of course if you are using Keycloak you could use OIDC&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 23 May 2024 00:39:46 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Integration-Extension-APIs/Keycloak-and-SAML-Validation-error/m-p/2455420#M20640</guid>
      <dc:creator>Marc</dc:creator>
      <dc:date>2024-05-23T00:39:46Z</dc:date>
    </item>
    <item>
      <title>Re: Keycloak and SAML - Validation error</title>
      <link>https://community.qlik.com/t5/Integration-Extension-APIs/Keycloak-and-SAML-Validation-error/m-p/2455939#M20653</link>
      <description>&lt;P&gt;Hi Marc, that is exactly how we have done the settings in Keycloak.&amp;nbsp;&lt;BR /&gt;we have tried OIDC as well, in that case it gives a First certificate issue, which i'm not sure what it is referring to.&lt;/P&gt;
&lt;P&gt;please consider that our Keycloak in publicly available and it's certificate is a valid one.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;thanks,&lt;BR /&gt;Loris&lt;/P&gt;</description>
      <pubDate>Fri, 24 May 2024 07:14:41 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Integration-Extension-APIs/Keycloak-and-SAML-Validation-error/m-p/2455939#M20653</guid>
      <dc:creator>LorisLombardo87</dc:creator>
      <dc:date>2024-05-24T07:14:41Z</dc:date>
    </item>
    <item>
      <title>Re: Keycloak and SAML - Validation error</title>
      <link>https://community.qlik.com/t5/Integration-Extension-APIs/Keycloak-and-SAML-Validation-error/m-p/2455947#M20654</link>
      <description>&lt;P&gt;&lt;a href="https://community.qlik.com/t5/user/viewprofilepage/user-id/192618"&gt;@LorisLombardo87&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Here is a full SAML response that is working (also keycloak), can you check if there is any obvious difference with yours?&lt;/P&gt;
&lt;LI-CODE lang="markup"&gt;&amp;lt;samlp:Response xmlns:samlp="urn:oasis:names:tc:SAML:2.0:protocol"
                xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion"
                Destination="https://xxxx.ap.qlikcloud.com/login/saml"
                ID="ID_9f3319ec-744e-47ba-b375-d817ed377e58"
                InResponseTo="Qlik_d8e89790-0499-4088-a707-28bd5b550f62"
                IssueInstant="2024-03-10T14:21:33.658Z"
                Version="2.0"
                &amp;gt;
    &amp;lt;saml:Issuer&amp;gt;https://qlikserver2.domain.local:8443/realms/master&amp;lt;/saml:Issuer&amp;gt;
    &amp;lt;dsig:Signature xmlns:dsig="http://www.w3.org/2000/09/xmldsig#"&amp;gt;
        &amp;lt;dsig:SignedInfo&amp;gt;
            &amp;lt;dsig:CanonicalizationMethod Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#" /&amp;gt;
            &amp;lt;dsig:SignatureMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256" /&amp;gt;
            &amp;lt;dsig:Reference URI="#ID_9f3319ec-744e-47ba-b375-d817ed377e58"&amp;gt;
                &amp;lt;dsig:Transforms&amp;gt;
                    &amp;lt;dsig:Transform Algorithm="http://www.w3.org/2000/09/xmldsig#enveloped-signature" /&amp;gt;
                    &amp;lt;dsig:Transform Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#" /&amp;gt;
                &amp;lt;/dsig:Transforms&amp;gt;
                &amp;lt;dsig:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256" /&amp;gt;
                &amp;lt;dsig:DigestValue&amp;gt;2L3+Qnr4G5TLM+pSIPGH3J1Fdo/lCXK/ZIUn2TWDzOw=&amp;lt;/dsig:DigestValue&amp;gt;
            &amp;lt;/dsig:Reference&amp;gt;
        &amp;lt;/dsig:SignedInfo&amp;gt;
        &amp;lt;dsig:SignatureValue&amp;gt;yvrhk1D2HUpvDRPu0eF2EZkpHN+Neh2ee7Wg8qaf+IFVtgyXc5PFjVnOUgljIJ5BriKCVNk49l34sx4sbtR28bbo3m3n+4BFpX5bQOwZumODLDZoPL01jXo4xQZzYtVwsNgpSkaryYnYctAsjAweMSSeyFWOlRkGyUepu+pELUOPgDkRsdvvPmdCTAL6tpxExTGPSQvbdOrTH8gSxZTGiIRMfhDUlY7cFY+ccwkwx7yFmk+uP+HX+Ps9kESF3sNto2rHBuUf4oawG27YorwZDaQAGKjQIDqld0JiBTePnLe97zJ+zxXk3q6hOuMgzumogTsMIMd1qH8Zo841LllN7g==&amp;lt;/dsig:SignatureValue&amp;gt;
        &amp;lt;dsig:KeyInfo&amp;gt;
            &amp;lt;dsig:X509Data&amp;gt;
                &amp;lt;dsig:X509Certificate&amp;gt;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&amp;lt;/dsig:X509Certificate&amp;gt;
            &amp;lt;/dsig:X509Data&amp;gt;
        &amp;lt;/dsig:KeyInfo&amp;gt;
    &amp;lt;/dsig:Signature&amp;gt;
    &amp;lt;samlp:Status&amp;gt;
        &amp;lt;samlp:StatusCode Value="urn:oasis:names:tc:SAML:2.0:status:Success" /&amp;gt;
    &amp;lt;/samlp:Status&amp;gt;
    &amp;lt;saml:Assertion xmlns="urn:oasis:names:tc:SAML:2.0:assertion"
                    ID="ID_539dfb0a-703c-4c5d-9e54-a040167c7167"
                    IssueInstant="2024-03-10T14:21:33.658Z"
                    Version="2.0"
                    &amp;gt;
        &amp;lt;saml:Issuer&amp;gt;https://qlikserver2.domain.local:8443/realms/master&amp;lt;/saml:Issuer&amp;gt;
        &amp;lt;saml:Subject&amp;gt;
            &amp;lt;saml:NameID Format="urn:oasis:names:tc:SAML:2.0:nameid-format:persistent"&amp;gt;G-5dbff66b-31d5-4060-8307-4267d731c370&amp;lt;/saml:NameID&amp;gt;
            &amp;lt;saml:SubjectConfirmation Method="urn:oasis:names:tc:SAML:2.0:cm:bearer"&amp;gt;
                &amp;lt;saml:SubjectConfirmationData InResponseTo="Qlik_d8e89790-0499-4088-a707-28bd5b550f62"
                                              NotOnOrAfter="2024-03-10T14:22:31.658Z"
                                              Recipient="https://xxxx.ap.qlikcloud.com/login/saml"
                                              /&amp;gt;
            &amp;lt;/saml:SubjectConfirmation&amp;gt;
        &amp;lt;/saml:Subject&amp;gt;
        &amp;lt;saml:Conditions NotBefore="2024-03-10T14:21:31.658Z"
                         NotOnOrAfter="2024-03-10T14:22:31.658Z"
                         &amp;gt;
            &amp;lt;saml:AudienceRestriction&amp;gt;
                &amp;lt;saml:Audience&amp;gt;https://xxxx.ap.qlikcloud.com&amp;lt;/saml:Audience&amp;gt;
            &amp;lt;/saml:AudienceRestriction&amp;gt;
        &amp;lt;/saml:Conditions&amp;gt;
        &amp;lt;saml:AuthnStatement AuthnInstant="2024-03-10T14:21:33.658Z"
                             SessionIndex="26996a77-ed62-43b3-a301-7bee4f33ca12::8e0bf523-4f9e-4970-a0a9-099046787a6e"
                             SessionNotOnOrAfter="2024-03-11T00:21:33.658Z"
                             &amp;gt;
            &amp;lt;saml:AuthnContext&amp;gt;
                &amp;lt;saml:AuthnContextClassRef&amp;gt;urn:oasis:names:tc:SAML:2.0:ac:classes:unspecified&amp;lt;/saml:AuthnContextClassRef&amp;gt;
            &amp;lt;/saml:AuthnContext&amp;gt;
        &amp;lt;/saml:AuthnStatement&amp;gt;
        &amp;lt;saml:AttributeStatement&amp;gt;
            &amp;lt;saml:Attribute FriendlyName="groups"
                            Name="groups"
                            NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"
                            &amp;gt;
                &amp;lt;saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema"
                                     xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance"
                                     xsi:type="xs:string"
                                     &amp;gt;Group1&amp;lt;/saml:AttributeValue&amp;gt;
                &amp;lt;saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema"
                                     xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance"
                                     xsi:type="xs:string"
                                     &amp;gt;Group2&amp;lt;/saml:AttributeValue&amp;gt;
            &amp;lt;/saml:Attribute&amp;gt;
            &amp;lt;saml:Attribute FriendlyName="email"
                            Name="email"
                            NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic"
                            &amp;gt;
                &amp;lt;saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema"
                                     xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance"
                                     xsi:type="xs:string"
                                     &amp;gt;user1@test.com&amp;lt;/saml:AttributeValue&amp;gt;
            &amp;lt;/saml:Attribute&amp;gt;
        &amp;lt;/saml:AttributeStatement&amp;gt;
    &amp;lt;/saml:Assertion&amp;gt;
&amp;lt;/samlp:Response&amp;gt;&lt;/LI-CODE&gt;</description>
      <pubDate>Fri, 24 May 2024 07:39:19 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Integration-Extension-APIs/Keycloak-and-SAML-Validation-error/m-p/2455947#M20654</guid>
      <dc:creator>Damien_V</dc:creator>
      <dc:date>2024-05-24T07:39:19Z</dc:date>
    </item>
    <item>
      <title>Re: Keycloak and SAML - Validation error</title>
      <link>https://community.qlik.com/t5/Integration-Extension-APIs/Keycloak-and-SAML-Validation-error/m-p/2457493#M20694</link>
      <description>&lt;P&gt;Hi Damien, thanks for you support!&lt;/P&gt;
&lt;P&gt;I've loaded the two SAML assertions into&amp;nbsp;&lt;A href="https://samltool.io/" target="_blank"&gt;https://samltool.io/&lt;/A&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;here is the one you shared&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="LorisLombardo87_0-1716986757445.png" style="width: 400px;"&gt;&lt;img src="https://community.qlik.com/t5/image/serverpage/image-id/167055i91CDD03A5A490B80/image-size/medium?v=v2&amp;amp;px=400" role="button" title="LorisLombardo87_0-1716986757445.png" alt="LorisLombardo87_0-1716986757445.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;here is mine:&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="LorisLombardo87_2-1716987063452.png" style="width: 400px;"&gt;&lt;img src="https://community.qlik.com/t5/image/serverpage/image-id/167058iC4AD7D0518427906/image-size/medium?v=v2&amp;amp;px=400" role="button" title="LorisLombardo87_2-1716987063452.png" alt="LorisLombardo87_2-1716987063452.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I cannot see any major difference&lt;/P&gt;
&lt;P&gt;can you see anything strange?&lt;/P&gt;
&lt;P&gt;please consider that our Keycloak is publicly available and the SSL certificate is a valid wildcard certificated emitted by a valid trusted authority&lt;/P&gt;
&lt;P&gt;Thanks,&lt;BR /&gt;Loris&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 29 May 2024 12:52:42 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Integration-Extension-APIs/Keycloak-and-SAML-Validation-error/m-p/2457493#M20694</guid>
      <dc:creator>LorisLombardo87</dc:creator>
      <dc:date>2024-05-29T12:52:42Z</dc:date>
    </item>
    <item>
      <title>Re: Keycloak and SAML - Validation error</title>
      <link>https://community.qlik.com/t5/Integration-Extension-APIs/Keycloak-and-SAML-Validation-error/m-p/2457681#M20700</link>
      <description>&lt;P&gt;can you please confirm how you have configured the settings in Qlik Cloud&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;
&lt;P&gt;as your saml does not appear to have groups, but roles&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Marc_0-1717041666337.png" style="width: 400px;"&gt;&lt;img src="https://community.qlik.com/t5/image/serverpage/image-id/167089i14F8E48EBCB35C9A/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Marc_0-1717041666337.png" alt="Marc_0-1717041666337.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 30 May 2024 04:01:59 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Integration-Extension-APIs/Keycloak-and-SAML-Validation-error/m-p/2457681#M20700</guid>
      <dc:creator>Marc</dc:creator>
      <dc:date>2024-05-30T04:01:59Z</dc:date>
    </item>
    <item>
      <title>Re: Keycloak and SAML - Validation error</title>
      <link>https://community.qlik.com/t5/Integration-Extension-APIs/Keycloak-and-SAML-Validation-error/m-p/2457840#M20704</link>
      <description>&lt;P&gt;Hi Marc,&amp;nbsp;&lt;/P&gt;
&lt;P&gt;it is configured like this.&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="LorisLombardo87_0-1717072592998.png" style="width: 400px;"&gt;&lt;img src="https://community.qlik.com/t5/image/serverpage/image-id/167103i97C79A9FD988A45A/image-size/medium?v=v2&amp;amp;px=400" role="button" title="LorisLombardo87_0-1717072592998.png" alt="LorisLombardo87_0-1717072592998.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;BTW i'm not interested in groups or picture at the moment.&lt;/P&gt;
&lt;P&gt;shall I leave that mapping blank?&lt;/P&gt;
&lt;P&gt;also the error doesn't seem so refer to the group attribute but in general to the fact it cannot find the Attributes in the SAML assertion.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks,&lt;BR /&gt;Loris&lt;/P&gt;</description>
      <pubDate>Thu, 30 May 2024 12:38:38 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Integration-Extension-APIs/Keycloak-and-SAML-Validation-error/m-p/2457840#M20704</guid>
      <dc:creator>LorisLombardo87</dc:creator>
      <dc:date>2024-05-30T12:38:38Z</dc:date>
    </item>
    <item>
      <title>Re: Keycloak and SAML - Validation error</title>
      <link>https://community.qlik.com/t5/Integration-Extension-APIs/Keycloak-and-SAML-Validation-error/m-p/2460600#M20749</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.qlik.com/t5/user/viewprofilepage/user-id/192618"&gt;@LorisLombardo87&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Since you mentioned you're not interested in groups, did you make sure that you have the "Group creation" option set to OFF in your tenant settings ?&lt;/P&gt;</description>
      <pubDate>Mon, 10 Jun 2024 06:53:52 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Integration-Extension-APIs/Keycloak-and-SAML-Validation-error/m-p/2460600#M20749</guid>
      <dc:creator>Damien_V</dc:creator>
      <dc:date>2024-06-10T06:53:52Z</dc:date>
    </item>
    <item>
      <title>Re: Keycloak and SAML - Validation error</title>
      <link>https://community.qlik.com/t5/Integration-Extension-APIs/Keycloak-and-SAML-Validation-error/m-p/2463923#M20783</link>
      <description>&lt;P&gt;hi Damien, yes it is.&lt;/P&gt;
&lt;P&gt;Loris&lt;/P&gt;</description>
      <pubDate>Wed, 19 Jun 2024 15:23:18 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Integration-Extension-APIs/Keycloak-and-SAML-Validation-error/m-p/2463923#M20783</guid>
      <dc:creator>LorisLombardo87</dc:creator>
      <dc:date>2024-06-19T15:23:18Z</dc:date>
    </item>
    <item>
      <title>Re: Keycloak and SAML - Validation error</title>
      <link>https://community.qlik.com/t5/Integration-Extension-APIs/Keycloak-and-SAML-Validation-error/m-p/2465492#M20804</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.qlik.com/t5/user/viewprofilepage/user-id/192618"&gt;@LorisLombardo87&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;After investigation, we found out that this is due to Keycloak sending the "Role" attribute with different value several times instead of sent as an array, if you remove the Role attribute from the SAML response in Keycloak then it should work.&lt;/P&gt;</description>
      <pubDate>Wed, 26 Jun 2024 00:31:18 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Integration-Extension-APIs/Keycloak-and-SAML-Validation-error/m-p/2465492#M20804</guid>
      <dc:creator>Damien_V</dc:creator>
      <dc:date>2024-06-26T00:31:18Z</dc:date>
    </item>
  </channel>
</rss>

