# SSO login causes "SAML response was not properly signed"

Attempts to log in through SSO on Chrome result in this error:

> Error: {“error”: “SAML response was not properly signed. Make sure to sign at least the SAML response or the assertion(s).”}

Internet Explorer 11 shows an **Error 400**.

## Cause

Discrepancies exist between the certificates used by the Identity Provider (IdP) and the Service Provider (SP) in the SAML response.

## Solution

1. Retrieve the new Federation Metadata from the ADFS server.
2. Enter the new metadata in the Zivver SSO settings.

_Overwrite the existing metadata._

Refer to [these steps in the ADFS manual](https://docs.zivver.com/en/admin/sso/microsoft-adfs-internal-network-only.html#set-up-sso-in-zivver-using-the-alternate-method) for more instructions.

Updated on 2026-01-21
