ID4149: The Saml2SecurityToken is rejected because the SAML2:Assertion specifies a OneTimeUse condition. Enforcement of the OneTimeUse condition is not supported by default. To customize the enforcement of Saml2Conditions, extend Saml2SecurityTokenHandler and override ValidateConditions. This request failed
This is by design. Explanation: OneTimeUse is defined in SAML 2.0 Core, section 2.5.1 and 2.5.1.5: -------------------------------------------------------------------------------------------------------------------------
Disable OneTimeUse at the CP STS
Ed Price - MSFT edited Original. Comment: White space issues