HMH ThinkCentral SAML requires a RelayState to be sent

HMH ThinkCentral SAML requires a RelayState to be sent

Issue:

Customers are being contacted by Houghton Mifflin Harcourt that the SAML webApp configured in Unified Workspace, for ThinkCentral, is not sending a RelayState.  They are stating that UW needs to be configured to send a RelayState, or they will have to discontinue service for security purposes.


Solution:

It appears that possibly during an upgrade the HMH SAML webApp is being switched from being configured as Service Provider initiated (sends a RelayState), to Identity Provider-initiated (does not send a RelayState).

To correct the webApps settings:
  1. Open the webAdmin Dashboard.
  2. Browse to the webApp object.
  3. Select the Authentication tab.
  4. Select the Service Provider initiated radio button.
    (The Audience field will be hidden, but still used.)
  5. Save the change.

Once the webApp reloads on all of the servers, it will begin to send the RelayState to HMH.