FIM Unsupported encryption algorithm error when importing partner metadata
Originally Published: 2008-09-25
Article Number
Applies To
Issue
2008-09-24 14:17:24,983, (SSOHelper.java:608), servera, , , , SSO top-level profile exception: , com.rsa.fim.profile.sso.SSOProfileException: Error encrypting the nameid: Unable to encrypt due to an error: Unsupported encryption algorithm
at com.rsa.fim.profile.util.ProfileHelper.encryptOrSignResponse(ProfileHelper.java:1165)
at com.rsa.fim.profile.sso.SSOProfileBean.processAuthnRequest(SSOProfileBean.java:1104)
This error indicates that FIM cannot determine the encryption algorithm of the certificates embedded in the metadata.
In this instance the following algorithm is listed in the metadata
<md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes-cbc"/>
The correct format for the algorithm should be:
<md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
Resolution
Related Articles
RSA SecurID Appliance 3.0 Service Pack 4 Migration Failure at Task 'Importing Certificates' 14Number of Views Password incorrect error when importing a PKCS#12 generated by RSA Certificate Manager on Microsoft Internet Explorer 108Number of Views FIPS status of RSA Cloud Access Service components 346Number of Views AFX test connector settings button times out and the test connector capabilities work or the test connector capabilities f… 403Number of Views 8.5P4 linux webtier shows online-reinstall required 351Number of Views
Trending Articles
RSA Authentication Manager 8.7 SP2 Setup and Configuration Guide RSA MFA Agent 2.5 for Microsoft Windows Installation and Administration Guide RSA SecurID software token .sdtid file fails to import into RSA SecurID Software Token 5.0 for Windows RSA MFA Agent 9.1 for UNIX Installation and Configuration Guide for RHEL and Ubuntu RSA Authentication Manager 8.9 Setup and Configuration Guide
Don't see what you're looking for?