FIM Unsupported encryption algorithm error when importing partner metadata
Originally Published: 2008-09-25
Last Modified: 2023-10-06
Article Number
Applies To
Issue
2008-09-24 14:17:24,983, (SSOHelper.java:608), servera, , , , SSO top-level profile exception: , com.rsa.fim.profile.sso.SSOProfileException: Error encrypting the nameid: Unable to encrypt due to an error: Unsupported encryption algorithm
at com.rsa.fim.profile.util.ProfileHelper.encryptOrSignResponse(ProfileHelper.java:1165)
at com.rsa.fim.profile.sso.SSOProfileBean.processAuthnRequest(SSOProfileBean.java:1104)
This error indicates that FIM cannot determine the encryption algorithm of the certificates embedded in the metadata.
In this instance the following algorithm is listed in the metadata
<md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes-cbc"/>
The correct format for the algorithm should be:
<md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
Resolution
Related Articles
RSA Governance & Lifecycle LDAP Novell eDirectory Connector Guide 18Number of Views RSA Governance & Lifecycle Custom Schema Connector Guide 47Number of Views Password incorrect error when importing a PKCS#12 generated by RSA Certificate Manager on Microsoft Internet Explorer 109Number of Views Cloud Administration Enable FIDO Authenticator API 40Number of Views Email and log file timestamps are incorrect in RSA Identity Governance & Lifecycle 70Number of Views
Trending Articles
How to manipulate imported RSA SecurID Software Token(s) on an iPhone or iPad device Manual synchronization introduced in RSA Authentication Manager 8.2 Service Pack 1 patch 6 Quick Setup Guide - Passwordless Authentication in Windows MFA Agent for Active Directory How to verify NTP server synchronization is not working in RSA Authentication Manager 8.x RSA Governance & Lifecycle 8.0.0 Installation Guide
Don't see what you're looking for?