My Oracle Support Banner

KeyInfo Element Not Generated As Part Of Signature Element In SAMl 2.0 Auth Request To IdP (Doc ID 1902509.1)

Last updated on FEBRUARY 15, 2019

Applies to:

Oracle Identity Federation - Version and later
Information in this document applies to any platform.


The Federation component in OAM does not generate the KeyInfo element containing the X509 certificate in a SP initiated AuthnRequest to an IdP.

The generated SAML request message is signed and a is provided.

There is no option to enable the generation of the KeyInfo element using the OAM console. The remote IdP requires the KeyInfo element to be present.

How to include KeyInfo in a SP initiated AuthnRequest to the IdP?


To view full details, sign in with your My Oracle Support account.

Don't have a My Oracle Support account? Click to get started!

In this Document

This document is being delivered to you via Oracle Support's Rapid Visibility (RaV) process and therefore has not been subject to an independent technical review.
My Oracle Support provides customers with access to over a million knowledge articles and a vibrant support community of peers and Oracle experts.