Qlik Community
Collaborate with over 60,000 Qlik technologists and members around the world to get answers to your questions, and maximize success.
Join UsWhen using Qlik NPrinting SAML with the Identity Provider Shibboleth, the user does not authenticate and is brought back to the NPrinting WebConsole login screen.
No error messages are seen on the WebConsole and the user is unable to login using SAML.
When enabling DEBUG logging per the help site: https://help.qlik.com/en-US/nprinting/November2018/Content/NPrinting/Troubleshooting/Troubleshooting-logs.htm
The following error will be seen:
18.39.6.0 Qlik.NPrinting.Repo.Service.AuthenticationService INFO QLIK-SERVER 0 0 0 0 0 0 0 0 Signature verification failed
IdP (e.g. Shibboleth) uses the second certificate to generate the SAML response signature. So if NPrinting uses the first certificate to validate the response signature, then the validation will fail.
The point is that NPrinting will take the first certificate with the "signing" attribute and use it to validate the SAML response signature it receives from the IdP, so, if this is not the certificate used for signing, the validation will fail.
In order to resolve the issue the second, unused Certificate must be manually removed from the IdP Metadata.Collaborate with over 60,000 Qlik technologists and members around the world to get answers to your questions, and maximize success.
Join UsSearch Qlik's Support Knowledge database or request assisted support for highly complex issues.
Submit a caseExperiencing a serious issue, please contact us by phone. For Data Integration related issues please refer to your onboarding documentation for current phone number.
Call Us