CRM Onpremise ADFS Error
Budget: £20 – £250 GBP
I have renewed my ADFS STS Token Certificates and now ADFS Not working - I have tried to redo the claims, redo the certs same error.
Only bid if you know how to fix this.
Exception information:
Exception type: EncryptedTokenDecryptionFailedException
Exception message: ID4036: The key needed to decrypt the encrypted security token could not be resolved from the following security key identifier '<e:EncryptedKey xmlns:e="http://www.w3.org/2001/04/xmlenc#"><e:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"><DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1" xmlns="http://www.w3.org/2000/09/xmldsig#" /></e:EncryptionMethod><KeyInfo xmlns="http://www.w3.org/2000/09/xmldsig#"><o:SecurityTokenReference xmlns:o="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-secext-1.0.xsd"><X509Data><X509IssuerSerial><X509IssuerName>CN=DigiCert TLS RSA SHA256 2020 CA1, O=DigiCert Inc, C=US</X509IssuerName><X509SerialNumber>18914240108838841391564841906577021743</X509SerialNumber></X509IssuerSerial></X509Data></o:SecurityTokenReference></KeyInfo><e:CipherData><e:CipherValue>EkUTne8ZzPBx2ONXhvV8UElXyfDss8Cd6KnWRy6gZTYXloqvswiYANgbMqQlbtWCErLGThcI1yQ7xcWctpBd/V+F0s/rcVNLBq/O6ff1FCVCgfVwuSALNn/L4Lfdhl5kS8CiOiwGYbevdfG2RoJeGiz/3+iwe4npKxiFrhKRN8ioxU/qJGel+OLZl54bR4vhIVFKTYzW0d5e70NE7oLDtyPrFSxT6rEztvGNo2IGtPp26dd/FoMHtmBAppTd8DsUkpHaG71ljZzztQs1ILuxtR9j6LdQHx5O7PP...'. Ensure that the SecurityTokenResolver is populated with the required key.
at System.IdentityModel.Tokens.EncryptedSecurityTokenHandler.ReadToken(XmlReader reader)
at System.IdentityModel.Tokens.SecurityTokenHandlerCollection.ReadToken(XmlReader reader)
at System.IdentityModel.Services.TokenReceiver.ReadToken(String tokenXml, XmlDictionaryReaderQuotas readerQuotas, FederationConfiguration federationConfiguration)
Only bid if you know how to fix this.
Exception information:
Exception type: EncryptedTokenDecryptionFailedException
Exception message: ID4036: The key needed to decrypt the encrypted security token could not be resolved from the following security key identifier '<e:EncryptedKey xmlns:e="http://www.w3.org/2001/04/xmlenc#"><e:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"><DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1" xmlns="http://www.w3.org/2000/09/xmldsig#" /></e:EncryptionMethod><KeyInfo xmlns="http://www.w3.org/2000/09/xmldsig#"><o:SecurityTokenReference xmlns:o="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-secext-1.0.xsd"><X509Data><X509IssuerSerial><X509IssuerName>CN=DigiCert TLS RSA SHA256 2020 CA1, O=DigiCert Inc, C=US</X509IssuerName><X509SerialNumber>18914240108838841391564841906577021743</X509SerialNumber></X509IssuerSerial></X509Data></o:SecurityTokenReference></KeyInfo><e:CipherData><e:CipherValue>EkUTne8ZzPBx2ONXhvV8UElXyfDss8Cd6KnWRy6gZTYXloqvswiYANgbMqQlbtWCErLGThcI1yQ7xcWctpBd/V+F0s/rcVNLBq/O6ff1FCVCgfVwuSALNn/L4Lfdhl5kS8CiOiwGYbevdfG2RoJeGiz/3+iwe4npKxiFrhKRN8ioxU/qJGel+OLZl54bR4vhIVFKTYzW0d5e70NE7oLDtyPrFSxT6rEztvGNo2IGtPp26dd/FoMHtmBAppTd8DsUkpHaG71ljZzztQs1ILuxtR9j6LdQHx5O7PP...'. Ensure that the SecurityTokenResolver is populated with the required key.
at System.IdentityModel.Tokens.EncryptedSecurityTokenHandler.ReadToken(XmlReader reader)
at System.IdentityModel.Tokens.SecurityTokenHandlerCollection.ReadToken(XmlReader reader)
at System.IdentityModel.Services.TokenReceiver.ReadToken(String tokenXml, XmlDictionaryReaderQuotas readerQuotas, FederationConfiguration federationConfiguration)