PROBLEM
When using the Security Assertion Markup Language (SAML) single sign-on in ArcGIS Online or the ArcGIS Enterprise portal, the following error is returned:
Error:
Unable to login using Idp. Error validating encrypted Assertion. Unwrapping failed.
This error occurs when the Encrypted Assertion setting is disabled in ArcGIS Online or the Enterprise portal, and the token encryption certificates are enabled in Microsoft Entra ID.
Note: ESRI recommends keeping the Encrypted Assertion setting enabled in ArcGIS Online or ArcGIS Enterprise to maintain a stronger cybersecurity posture.
Article ID: 000033809
Get help from ArcGIS experts
Start chatting now