To view or download the Jamf Pro server log, see Viewing or Downloading the Jamf Pro Server Log in the Jamf Pro Documentation.
| Error Message | Log Message | Cause | Resolution |
|---|---|---|---|
"An error occurred while processing your Single Sign-On request. Contact your administrator for assistance." Jamf Pro Log: | "Error validating SAML message" | Signing certificate is invalid. | Ensure that certificates from your Identity Provider and Jamf Pro are valid. Remember to refresh Jamf Pro Metadata after making changes. |
"An error occurred while processing your Single Sign-On request. Contact your administrator for assistance." Jamf Pro Log: | "Authentication statement is too old to be used" | Identity provider and the Jamf Pro Single Sign-On session lifetime are not set to the same value. | Adjust the token expiration settings. |
"An error occurred while processing your Single Sign-On request. Contact your administrator for assistance." Jamf Pro Log: | "Metadata includes wantAssertionSigned, but neither Response nor included Assertion is signed" | Identity provider does not sign SAML assertions. | Verify your IdP configuration. |
| "Access Denied. Contact your administrator to request access to the Jamf Pro server." | User was not mapped to Jamf Pro. | Check the following:
| |
| "Metadata file does not contain signing certificate information" | When uploading a metadata file to the Jamf Pro server, error is displayed when the | Add the attribute to the file:
|
For all other issues, contact Jamf Support.