<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="https://community.appian.com/cfs-file/__key/system/syndication/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>B2C SAML Authentication Integration Error.</title><link>https://community.appian.com/discussions/f/integrations/21498/b2c-saml-authentication-integration-error</link><description>I&amp;#39;ve followed the steps from https://docs.microsoft.com/en-us/azure/active-directory-b2c/saml-service-provider?tabs=windows&amp;amp;pivots=b2c-custom-policy 
 While testing receiiving the error &amp;quot;Application registered corresponding to IssuerUri &amp;quot; &amp;quot;&amp;gt;https://xyz</description><dc:language>en-US</dc:language><generator>Telligent Community 12</generator><item><title>RE: B2C SAML Authentication Integration Error.</title><link>https://community.appian.com/thread/84317?ContentTypeID=1</link><pubDate>Wed, 04 Aug 2021 11:36:15 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:02c9bf02-acec-4216-977f-a5ce6ae8f76f</guid><dc:creator>Karikalan Ramakrishnan</dc:creator><description>&lt;p&gt;Done, thanks Acacio.&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: B2C SAML Authentication Integration Error.</title><link>https://community.appian.com/thread/84218?ContentTypeID=1</link><pubDate>Sun, 01 Aug 2021 23:01:09 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:1fee7a9c-aa5f-4395-b423-0f833914c849</guid><dc:creator>Acacio Barrado</dc:creator><description>&lt;p&gt;Hi Karikalan,&lt;/p&gt;
&lt;p&gt;That is a good tip, can you could you please change the status of the thread to answered so it can help more people in the future?&lt;/p&gt;
&lt;p&gt;Regards&lt;/p&gt;
&lt;p&gt;Acacio B&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: B2C SAML Authentication Integration Error.</title><link>https://community.appian.com/thread/84212?ContentTypeID=1</link><pubDate>Sun, 01 Aug 2021 04:19:04 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:4061fc6f-077b-4bc2-9820-548731d50109</guid><dc:creator>Karikalan Ramakrishnan</dc:creator><description>&lt;p&gt;&lt;span&gt;&amp;quot;The username or password provided in the request are invalid&amp;quot; - This issue has been resolved by granting &amp;quot;IdentityExperienceFramework&amp;quot; (User_impersonation - Delegated Type) API permission. I could not see this solution on MS documents guidance, however this has resolved my issue. thanks.&lt;/span&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: B2C SAML Authentication Integration Error.</title><link>https://community.appian.com/thread/84001?ContentTypeID=1</link><pubDate>Fri, 23 Jul 2021 22:18:22 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:0250ddf8-a42c-471b-824d-0a6e60b7301c</guid><dc:creator>Karikalan Ramakrishnan</dc:creator><description>&lt;p&gt;Thanks Acacio, yes. It&amp;#39;s set to None.&lt;/p&gt;
&lt;p&gt;Also I can we dont need to assign user like B2B as shown below, SAML tracer only shows the Request not Response. I&amp;#39;ve tried registering the application both B2C Service plade and B2C Tenant AAD blade still receiving the same invalid user /pwd error. Same account has been created in B2C and Appian too.&amp;nbsp; It looks more common error as discussed on&amp;nbsp;&lt;a href="https://docs.microsoft.com/en-us/answers/questions/50355/unable-to-sign-on-using-custom-policy.html"&gt;docs.microsoft.com/.../unable-to-sign-on-using-custom-policy.html&lt;/a&gt;&lt;/p&gt;
&lt;p&gt;&lt;img alt=" " src="/resized-image/__size/320x240/__key/communityserver-discussions-components-files/18/pastedimage1627078633050v1.png" /&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: B2C SAML Authentication Integration Error.</title><link>https://community.appian.com/thread/84000?ContentTypeID=1</link><pubDate>Fri, 23 Jul 2021 22:11:56 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:a798e8ee-3c0c-4534-b2ea-6fdae4782e77</guid><dc:creator>Acacio Barrado</dc:creator><description>&lt;p&gt;Quick question,&amp;nbsp;&lt;/p&gt;
&lt;p&gt;Is your Authentication Method set to None?&lt;/p&gt;
&lt;p&gt;&lt;img src="/resized-image/__size/320x240/__key/communityserver-discussions-components-files/18/pastedimage1627078325988v1.png" alt=" " /&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: B2C SAML Authentication Integration Error.</title><link>https://community.appian.com/thread/83999?ContentTypeID=1</link><pubDate>Fri, 23 Jul 2021 22:02:03 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:8512a920-83d5-45f1-b569-c00e8978cfbb</guid><dc:creator>Karikalan Ramakrishnan</dc:creator><description>&lt;p&gt;Thanks Acacio, that issue has been resolved by changing to issuer id as suggested in the forum&amp;nbsp;&lt;a href="https://stackoverflow.com/questions/65710654/mendix-and-azure-ad-b2c-authrequest-does-not-have-assertion-consumer-service-url"&gt;https://stackoverflow.com/questions/65710654/mendix-and-azure-ad-b2c-authrequest-does-not-have-assertion-consumer-service-url&lt;/a&gt;&lt;/p&gt;
&lt;p&gt;However, SP sign-in page now displaying an error &amp;quot;The username or password provided in the request are invalid&amp;quot;. Though username and password are correct not sure why I get this error...In B2B, I used to assign the user access to registered app whereas in B2C I don&amp;#39;t see any such option, I was wondering how system will recognize B2C local account user has access privilege to the application?&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;/p&gt;
&lt;p&gt;&amp;quot;identifierUris&amp;quot;: [&lt;br /&gt; "https://xyz.com"&lt;br /&gt; ],&lt;/p&gt;
&lt;p&gt;&lt;/p&gt;
&lt;p&gt;&lt;img height="425" src="/resized-image/__size/320x240/__key/communityserver-discussions-components-files/18/pastedimage1627077532196v1.png" width="418" alt=" " /&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: B2C SAML Authentication Integration Error.</title><link>https://community.appian.com/thread/83998?ContentTypeID=1</link><pubDate>Fri, 23 Jul 2021 21:53:20 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:9a852933-798e-44cb-9fd1-4b6c290678a4</guid><dc:creator>Acacio Barrado</dc:creator><description>&lt;p&gt;Hi Karikalan,&lt;/p&gt;
&lt;p&gt;You can try to have a look in this link, perhaps this can help you to double check your configurations on the Azure side:&lt;/p&gt;
&lt;p&gt;&lt;a href="https://docs.microsoft.com/en-us/azure/active-directory/saas-apps/appian-tutorial#next-steps"&gt;https://docs.microsoft.com/en-us/azure/active-directory/saas-apps/appian-tutorial#next-steps&lt;/a&gt;&lt;/p&gt;
&lt;p&gt;When I got a similar error was because of the Reply URL that was not saved:&lt;/p&gt;
&lt;p&gt;&lt;img src="/resized-image/__size/320x240/__key/communityserver-discussions-components-files/18/pastedimage1627077168042v1.png" alt=" " /&gt;&lt;/p&gt;
&lt;p&gt;&lt;/p&gt;
&lt;p&gt;But following the steps provided on the link solved my case.&lt;/p&gt;
&lt;p&gt;Hope that also help you.&lt;/p&gt;
&lt;p&gt;A.&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: B2C SAML Authentication Integration Error.</title><link>https://community.appian.com/thread/83997?ContentTypeID=1</link><pubDate>Fri, 23 Jul 2021 21:35:19 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:365d9ae2-3308-4a6a-b546-6e048e415b4d</guid><dc:creator>Karikalan Ramakrishnan</dc:creator><description>&lt;p&gt;Thanks Acacio, still receiving the same error without &amp;quot;Suite&amp;quot; on it.&lt;/p&gt;
&lt;p&gt;&amp;lt;samlp:StatusMessage&amp;gt;Application registered corresponding to IssuerUri &amp;quot;&lt;a href="https://xyz.com"&gt;&amp;quot;&amp;gt;https://xyz.com&amp;quot;&lt;/a&gt; &lt;br /&gt; in AuthRequest does not have assertion consumer service URL &amp;quot;https://&lt;span&gt;xyz.com&lt;/span&gt;/suite/saml/AssertionConsumer&amp;quot; specified in its metadata.&lt;/p&gt;
&lt;p&gt;Just want to make sure my B2C IdentityExperienceFramework application registration JSON Manifest, IdentifierUris format is correct,&lt;br /&gt;&amp;quot;identifierUris&amp;quot;: [&lt;br /&gt; "https://xyz.com/c3bcfc1c-1234-4a3b-96e6-db0933071234"&lt;br /&gt; ],&lt;/p&gt;
&lt;p&gt;Secondly, I&amp;#39;m not getting clearly what does this mean to do in &lt;strong&gt;&lt;code&gt;TrustFrameworkExtensions.xml&lt;/code&gt;&lt;/strong&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;?&amp;nbsp;&lt;span&gt;From MS Ref. doc: You can change the value of the IssuerUri metadata item in the SAML token issuer technical profile. This change will be reflected in the issuerUri attribute returned in the SAML response from Azure AD B2C. Your application should be configured to accept the same issuerUri during SAML response validation.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;&lt;span class="hljs-tag"&gt;&amp;lt;&lt;span class="hljs-name"&gt;Metadata&lt;/span&gt;&amp;gt;&lt;/span&gt; &lt;span class="hljs-tag"&gt;&amp;lt;&lt;span class="hljs-name"&gt;Item&lt;/span&gt; &lt;span class="hljs-attr"&gt;Key&lt;/span&gt;=&lt;span class="hljs-string"&gt;&amp;quot;IssuerUri&amp;quot;&lt;/span&gt;&amp;gt;&lt;/span&gt;https://issuerUriMyAppExpects&lt;span class="hljs-tag"&gt;&amp;lt;/&lt;span class="hljs-name"&gt;Item&lt;/span&gt;&amp;gt;&lt;/span&gt; &lt;span class="hljs-tag"&gt;&amp;lt;/&lt;span class="hljs-name"&gt;Metadata&lt;/span&gt;&amp;gt; should be replaced as shown below?&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;&amp;lt;Metadata&amp;gt;&lt;br /&gt; &amp;lt;Item Key=&amp;quot;IssuerUri&amp;quot;&amp;gt;xyz.com/.../Item&amp;gt;&lt;br /&gt; &amp;lt;/Metadata&amp;gt;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;&lt;img src="/resized-image/__size/320x240/__key/communityserver-discussions-components-files/18/pastedimage1627076165222v1.png" alt=" " /&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;&lt;/span&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: B2C SAML Authentication Integration Error.</title><link>https://community.appian.com/thread/83995?ContentTypeID=1</link><pubDate>Fri, 23 Jul 2021 18:33:27 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:cf356326-51df-45b0-bafb-d6c0fa974804</guid><dc:creator>Acacio Barrado</dc:creator><description>&lt;p&gt;Hi Karikalan,&lt;/p&gt;
&lt;p&gt;Could you please check in your Admin Console if in the&amp;nbsp;&lt;span&gt;Service Provider Entity ID option the URL is defined in this pattern &lt;a href="https://xyx.appiancloud.com"&gt;https://xyx.appiancloud.com&lt;/a&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;You should not include the /suite&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;Regards,&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;Acacio B.&lt;/span&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item></channel></rss>