Signature validation failed: REQUESTER

Problem

SSO Diag log stack trace contains:

protocol [IP address] SingleSignOnServlet.service() protocol.TicketProtocolException: Ticket validation error

Caused by: com.ubisecure.saml2.core.SAMLIntegrityException: Signature validation failed: REQUESTER

Solution

Assuming there is no other data tampering and this occurs repeatedly, one cause can be if the keys exchanged in the metadata are no longer correct. Reload the SP metadata to Ubisecure SSO Management using the Agents tab. If there is any doubt that the metadata file is correct, reactivate the SP (using generate and metadata commands) and try again.