FIM error 'The name ID plug-in configuration for this format could not be retrieved'
Originally Published: 2011-09-12
Last Modified: 2023-10-06
Article Number
Applies To
Issue
FIM error "The name ID plug-in configuration for this format could not be retrieved"
The following exception is generated by FIM:
2011-08-30 11:48:15,965, (SAML11AssertionConsumerServiceServlet.java:81), fim.rsa.com, , , , A ProfileException was encountered, com.rsa.fim.profile.sso.SSOProfileException: The name ID plug-in configuration for this format could not be retrieved
at com.rsa.fim.profile.sso.SSOHelper.nullCheck(SSOHelper.java:394)
Cause
Resolution
<StaticField Key="SupportedNameIDs">
<Value>urn:oasis:names:tc:SAML:1.0:assertion#X509SubjectName</Value>
<Value>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</Value>
<!-- <Value>urn:oasis:names:tc:SAML:1.0:assertion#emailAddress</Value>
<Value>urn:oasis:names:tc:SAML:1.0:assertion#WindowsDomainQualifiedName</Value> -->
</StaticField>
Once the plugin.xml has been modifed you will need to restart FIM to support the new nameID type.
Create a new plugin definition in the FIM console. Under the "Plugin configuration" tab enter "unspecified" as the "Local name ID Format".
Now when you go to the association page under"Federated Identity Options" in the "Name Identifier Types" section you will see a new entry for the "unspecified Plug-in". Select this as the plugin to use for your partner association and the nameID should now be correctly parsed.
Workaround
urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified
Related Articles
FIM error message 'name ID plug-in configuration for this format could not be retrieved' 15Number of Views FIM fimconsole does not load. error 'One or more instances could not be retrieved' 24Number of Views FIM - Null pointer exception -'error encrypting the name id unable to encrypt' 19Number of Views SMS HTTP Plug-In Configuration Parameters 26Number of Views FIM error "The provided SP entity ID is null" 21Number of Views
Trending Articles
How to manipulate imported RSA SecurID Software Token(s) on an iPhone or iPad device Manual synchronization introduced in RSA Authentication Manager 8.2 Service Pack 1 patch 6 Quick Setup Guide - Passwordless Authentication in Windows MFA Agent for Active Directory How to verify NTP server synchronization is not working in RSA Authentication Manager 8.x RSA Governance & Lifecycle 8.0.0 Installation Guide
Don't see what you're looking for?