Skip to Main Content

Share your product feedback

Status Future consideration
Categories User management
Created by Ori Kanfer
Created on Jul 9, 2018

SSO - support signing outbound authentication requests

Our infosec requires SAML requests to be signed, and don't approve the strict HTTPS certificate checking when sending requests to identity providers.

This causes links to our ideas portal to work only if the user is already logged in, which really makes it hard to share links and email updates.
Please implement signed SAML requests - thanks!

  • Attach files
  • Sanchit R
    Aug 18, 2026

    Adding our use case for visibility.

    We run an external customer-facing Ideas portal (Akamai Ideas External) with SAML SSO against our internal IdP, Akamai Control Center. Our IdP team recently tightened security policy to require all incoming SAMLRequests to be signed. Since Aha! doesn't support signing outgoing SAMLRequests, our SP-initiated SSO flow is now completely broken, customers landing on the portal and trying to log in hit a hard failure on our IdP side (signature validation error), with no way for us to fix it from the Aha! side.

    IdP-initiated SSO isn't a realistic full replacement for us either, since this is an external, customer-facing portal, we can't assume our customers already have logins into our internal IdP to start the flow from there. For a portal meant to serve outside customers, requiring them to authenticate through an internal system first defeats the purpose of a smooth self-service SSO experience.

    This is blocking SSO login entirely for an external, customer-facing use case, not just an internal convenience. Would appreciate this being prioritized, and happy to share more details on our specific config if useful for scoping the fix.

  • +1