When tried to integrate any external IDP for their SAML like Forgerock they get an error saying ForgeRock "Invalid signature in Request".
Issue: When tried to integrate any external IDP for their SAML like Forgerock they get an error saying ForgeRock "Invalid signature in Request".
Root Cause: This is due to the Signature validation present in the IDP server side.
Resolution:
ForgeRock or any other IDP has to disable the signature validation to bypass this to work properly.