33.3.39 The SAML Authentication Fails When an Unsigned Request Contains an ACS URL

If an ACS URL is defined in an unsigned SAML request, the authentication fails and shows the following message:

Unable to complete request at this time.(ACS URL in unsigned request could not be verified.)

Workaround: Set the IGNORE_ACS_METADATA_CHECK option to true as follows:

  1. Click Devices > Identity Servers > Servers > Edit > SAML 2.0 > Service Provider > Options > New.

  2. Specify the following details:

    • Property Type: Select OTHER.

    • Property Name: Specify IGNORE_ACS_METADATA_CHECK.

    • Property Value: Specify true.

  3. Click OK.