码迷,mamicode.com
首页 > 其他好文 > 详细

The encryption certificate of the relying party trust identified by thumbprint is not valid

时间:2014-07-01 07:27:53      阅读:339      评论:0      收藏:0      [点我收藏+]

标签:adfs   dynamics crm   encryption   msis3014   

CRM2013部署完ADFS后通过url在浏览器中访问测试是否成功,成功进入登陆界面但在登陆界面输入用户名和密码后始终报身份验证失败,系统中的报错信息如下:Microsoft.IdentityServer.AuthenticationFailedException: MSIS3014。The encryption certificate of the relying party trust ‘https://internalcrm.xx.com.cn:446/‘ identified by thumbprint ‘BF19134359B872575F6F218181267B831EFE4A94‘ is not valid. It might indicate that the certificate has been revoked, has expired, or that the certificate chain is not trusted. 

bubuko.com,布布扣

解决方法:执行下面这段指令把证书加密验证关掉

Set-ADFSRelyingPartyTrust  -TargetName <relyingpartytrustName> -EncryptionCertificateRevocationCheck None


此处的replyingpartytrustname即是在AD FS管理器中新建的Replying Party Trust的displayname

bubuko.com,布布扣

再次访问登陆就验证过去了。


参考链接:http://stackoverflow.com/questions/10209143/adfs-2-0-request-token-for-service-in-different-ad

The encryption certificate of the relying party trust identified by thumbprint is not valid,布布扣,bubuko.com

The encryption certificate of the relying party trust identified by thumbprint is not valid

标签:adfs   dynamics crm   encryption   msis3014   

原文地址:http://blog.csdn.net/vic0228/article/details/36005319

(0)
(0)
   
举报
评论 一句话评论(0
登录后才能评论!
© 2014 mamicode.com 版权所有  联系我们:gaon5@hotmail.com
迷上了代码!