SSO AEM, Azure - one last problem!
I have one last error!!! I have followed all the instructions in AEM documentation from what I can tell.
The redirect to login.microsoft.com works.
It redirects to /content/saml_login (also used /saml_login) - It returns a 403 error.
I inspected the payload and decode base 64 - looks pretty good!
I turned on TRACE for SAML in AEM
This is the response.
com.adobe.granite.auth.saml.SamlAuthenticationHandler Private key of SP not provided: Cannot sign Authn request.
I've unchecked and checked create User and add to groups (every combination) - no luck.
I've uploaded the certificate to Trust store several times and ensured password is good. Tried mapping to user in this last try. No luck.
Created a Truststore for admin user - still no luck (didn't upload a cert to admin user)
Unchecked "Use encryption" - no luck.
Please, please, please, I need some other ideas . . . thanks.
Below are strategic screenshots


