Share via


Workflow Manager installation The token provider was unable to provide a security token while accessing

Question

Wednesday, September 19, 2018 11:18 AM

Hi,

I am installing workflow manager with single server. 

domain :  mydomain.net

hostname :  workflowserver

host url map to workflow server ip :  workflowserver.mycompany.com

Log details

Endpoint=sb://workflowserver.mydomain.net/WorkflowDefaultNamespace;StsEndpoint=https://workflowserver.mydomain.net:9355/WorkflowDefaultNamespace;RuntimePort=9354;ManagementPort=9355

Configuring Workflow Manager runtime settings.
The token provider was unable to provide a security token while accessing 'https://workflowserver.mydomain.net:9355/WorkflowDefaultNamespace/$STS/Windows/'. 
Token provider returned message: 'The underlying connection was closed: Could not establish trust relationship for the SSL/TLS secure channel.'.

Endpoints                  : {https://workflowserver.mydomain.net:12290/}

pls guide what is an issue and how to fix it. why endpoint names generated with domain name not with url map to ip. thx

iffi

All replies (6)

Thursday, September 20, 2018 5:11 AM

Issue #2

System.Management.Automation.CmdletInvocationException: The token provider was unable to provide a security token while accessing 'https://sharepoint0120.secam.sa.net:9355/WorkflowDefaultNamespace/$STS/Windows/'. Token provider returned message: '<Error><Code>400</Code>

Solution

Make sure CU 2 for Workflow Manager is installed. The Workflow service account has dbo permission on SB and WF databases.

Refer to

Justin Liu Office Servers and Services MVP, MCSE
Senior Software Engineer
Please Vote and Mark as Answer if it helps you.


Monday, September 24, 2018 2:03 AM

Hi iffi, 

How are things going? Is there any update on your issue?

Best regards,

Allen Bai

Please remember to mark the replies as answers if they helped. If you have feedback for TechNet Subscriber Support, contact [email protected].


Click here to learn more. Visit the dedicated forum to share, explore and talk to experts about Microsoft Teams.


Monday, September 24, 2018 5:27 AM

Hi,

I have install workflow manager CU5. user has permission on db. when i install using auto generated certificate than able to install successfully. so i think its certificate issue.

can u guide me how to generate certificate so that i can direct domain admin to generate certificate for workflow. we are using digicert .

pls guide.

thx.

iffi


Tuesday, September 25, 2018 9:26 AM

Hi iffi,

You can refer to below article:

/en-us/sharepoint/governance/install-workflow-manager-certificates-in-sharepoint-server

Best regards,

Allen Bai

Please remember to mark the replies as answers if they helped. If you have feedback for TechNet Subscriber Support, contact [email protected].


Click here to learn more. Visit the dedicated forum to share, explore and talk to experts about Microsoft Teams.


Tuesday, September 25, 2018 9:55 AM

Hi,

i am still getting certificate error while using domain certificate, then i used self generated certificate and add this certificate on SharePoint server using CA.

should i have to add workflow certificate on all SharePoint server at windows certificate store.

pls guide.

iffi


Wednesday, October 3, 2018 7:50 AM

Hi iffi, 

Yes, you need. If Workflow Manager is configured to generate self-signed certificates, you must install Workflow Manager certificates on SharePoint server.

Reference:

/en-us/sharepoint/governance/install-workflow-manager-certificates-in-sharepoint-server

Best regards,

Allen Bai

Please remember to mark the replies as answers if they helped. If you have feedback for TechNet Subscriber Support, contact [email protected].


Click here to learn more. Visit the dedicated forum to share, explore and talk to experts about Microsoft Teams.