ErrLookup › apereo/cas
apereo/cas
Apereo CAS - Identity & Single Sign On for all earthlings and beyond. · Java · 4,954 source files
Analyzed at e7288fc434 on 2026-09-08. 624 documented errors.
| Code / Message | Type | Severity | Tags |
|---|---|---|---|
| Unable to authorize surrogate authentication request for | exception | error | surrogate-authentication, impersonation-unauthorized, cas |
| Requested attribute [ ] could not be found in the query… | console | warning | jdbc, authentication, attribute-resolution, config-mismatch |
| Public and private keys do not match | exception | critical | spring, saml, keystore, x509, startup-failure |
| Authentication has failed because LDAP password policy… | exception | error | ldap, authentication, password-policy, configuration |
| Ticket [ ] is not registered in the catalog and is… | console | warning | ticket-registry, ignite, ticket-catalog, null-return |
| LoggingUtils.warn(LOGGER, e) | console | warning | duo, webflow, swallowed-exception, session |
| Lookup of datasource | console | warning | jndi, datasource, hikari, fallback, jpa |
| Unable to pull changes from the remote repository. Metadata… | console | warning | git, saml-metadata, network, stale-data |
| Principal attribute [ | validation | error | aup, jdbc, principal-attributes, cas |
| Expired [ ]: number of seconds since ticket usage time [ ]… | console | warning | cas, expiration-policy, throttling, replay-protection |
| No security questions could be found for | console | warning | password-management, security-questions, empty-result, webflow |
| Unable to locate a valid SAML metadata resolver for to… | exception | error | saml, metadata, resolver, cache, idp |
| Impersonation is not allowed for | exception | error | surrogate, impersonation, authorization, service-ticket |
| Google authenticator token credential is not assigned a… | console | error | gauth, mfa, webflow, account-id-mismatch |
| No risk calculators are available to evaluate… | console | warning | risk-authentication, electrofence, misconfiguration, empty-collection |
| Unexpected activationStatus | console | warning | mfa, inwebo, webflow, unhandled-status |
| WS Requested Security Token is blank or the signature is… | exception | error | ws-federation, signature-validation, saml-assertion, certificate-mismatch |
| Using Hazelcast WAN Replication requires a Hazelcast… | console | error | hazelcast, license, configuration, enterprise-feature |
| Encrypted method [ ] is not supported for algorithm [ ]… | console | warning | jwt, jwe, nimbus, cli, encryption |
| No multifactor authentication providers are available in… | exception | error | mfa, risk-authentication, electrofence, authentication-blocked |
| Unable to validate multifactor credential with status | exception | error | mfa, rest, http-status, external-service |
| Access token request cannot be validated for grant type | validation | error | oauth, token-request, redirect-uri, authorization-code |
| Groovy script [ ] does not exist or cannot be loaded | console | warning | saml, groovy, attributes, script-not-found, release-policy |
| Unable to locate acs url in for entity | console | warning | saml, idp, acs, metadata, sp-configuration |
| CAS is configured to only accept pushed authorization… | console | warning | oidc, par, http-403, authorization-request |
| [ ] is not found in the registry or service access is… | console | error | saml, service-registry, unauthorized-service, cas |
| Skipped metadata SignatureValidationFilter since signature… | console | warning | saml, signature-validation, security, metadata-filter |
| YubiKey id is not recognized in registry | exception | error | yubikey, authentication, account-not-found, mfa |
| Principal resolution is set to resolve users via… | console | warning | principal-resolution, attribute-repository, configuration, ldap |
| Could not add template prefix | console | warning | thymeleaf, view-resolver, template, configuration |
| e.getMessage() | http | warning | rest, authentication, http-403, reports-endpoint |
| Primary ticket-granting ticket expiration policy is set to… | console | warning | cas, expiration-policy, configuration, security |
| throwable.getMessage() | exception | error | |
| Unable to grant access to | exception | error | authentication, configuration, attributes, spring-security |
| Device registration is disabled for | console | warning | mfa, otp, device-registration, configuration |
| No metadata could be found for | console | error | saml, metadata, unauthorized-service, cas |
| No surrogate identifier was selected or provided | console | warning | surrogate, webflow, selection, missing-parameter |
| Federation role [" + role + "] is not supported for Trust… | exception | error | oidc, federation, invalid-role, illegal-argument |
| Signing credentials for validation could not be resolved | exception | error | saml, signature-validation, sp-metadata, credentials |
| Unable to use 'none' as introspection signing algorithm | exception | error | oidc, introspection, signing, misconfiguration, none-alg |
| Could not decode provided KeyFile | exception | error | spring, saml, private-key, pkcs8, keystore |
| Invalid credentials: | exception | error | azure-ad, authentication, failed-login, msal |
| No multifactor authentication providers are specified to… | exception | error | mfa, risk-authentication, electrofence, ambiguous-config |
| Unable to accept the ID token with an invalid [sub] claim | exception | error | aws, cognito, jwt, oidc-token, authentication |
| Configuration element indicated an entityCertificate, but… | exception | error | spring, saml, x509, pem, configuration |
| Not all requested multifactor providers could be found… | exception | error | mfa, configuration, provider |
| Registered service [ ] has expired on [ ] | console | info | service-expiration, service-registry, lifecycle, scheduled-task |
| e.getMessage() (ResourceNotFoundException logged during… | console | warning | dynamodb, ticket-registry, aws, recovery |
| Denied | exception | error | |
| Authorization of OTP token | exception | error | gauth, otp, failed-login, principal-mismatch |
| Error loading resources from bundle | console | warning | i18n, themes, resource-loading, io |
| Failed to authenticate code | exception | error | mfa, authentication, one-time-token, principal-mismatch |
| Impersonating is not allowed | exception | error | surrogate-authentication, impersonation-unauthorized, service-ticket, cas |
| Unable to resolve federated service | console | error | oidc, openid-federation, trust-chain, network |
| When the password field is left undefined, CAS will skip… | console | warning | jdbc, authentication, weak-auth, config |
| Credential attributes do not include an attribute for | console | warning | ws-federation, principal-resolution, sso, claims |
| Duo returned code | exception | error | duo, mfa, api-error, upstream |
| Missing scope [ ]. Unable to authenticate access token | exception | error | uma, oauth, access-token, missing-scope, authentication |
| Unable to authenticate | exception | error | |
| An authentication pre-processor could not successfully… | console | error | authentication, pre-processor, transaction, exception |
| The X.509 feature over REST using header/body… | console | warning | x509, security, configuration, mutual-tls, rest |
| SAML metadata resolver | console | error | saml, metadata, cache, entity-descriptor |
| Duo returned an Invalid response with message | console | warning | duo, mfa, api-response |
| Response type [ ] or grant type [ ] is not supported. | validation | error | oauth, device-code, grant-type, response-type |
| Unable to validate JWT signature | validation | error | jwt, signature-validation, crypto, token |
| sent an unacceptable response status code | exception | error | |
| Token is not authorized for device identifier | exception | error | qr-authentication, device-authorization, cas |
| Throttling submission from | http | warning | throttling, rate-limiting, authentication, prehandle |
| Service ticket [ ] does not satisfy validation… | console | warning | ticket-validation, cas-protocol, validation-specification, renew |
| Unable to locate authentication object in the webflow… | exception | error | webflow, authentication, spring-webflow |
| Unable to locate ticket map for ticket metadata | console | warning | hazelcast, tickets, registry, configuration |
| Duo Security authentication has failed | exception | error | duo, mfa, authentication |
| DynamoDb batch write returned | console | warning | dynamodb, batch-write, throttling, retry, backoff |
| Failed: status with message | exception | error | azure-ad, microsoft-graph, http, authentication |
| Registered service access is not allowed for service… | validation | warning | oauth, device-code-flow, access-denied, service-registry |
| Unable to use 'none' for the user-info signing algorithm | exception | error | oidc, configuration, misconfiguration, signing |
| Assertion consumer service | exception | error | saml, idp, acs, metadata-mismatch, authn-request |
| Final ticket id [ ] length [ ] exceeds [ ] characters | console | warning | tickets, length-limit, encoding, registry |
| Unable to determine duration for SAML service | console | warning | saml, configuration, cache-expiration, missing-entity-id |
| Unable to query OSV for runtime dependency vulnerabilities | console | warning | network, osv, vulnerability-scan, http |
| Cannot find entity [ ] in metadata provider for criteria [ ] | console | warning | saml, metadata, entity-not-found, idp |
| CRL data is not available for | console | warning | x509, crl, revocation, certificate |
| Missing required principal attribute for claim | exception | error | oidc, verifiable-credentials, attributes, validation |
| Unable to encode URL | console | warning | url-encoding, webflow, http, charset |
| Grouper WS did not respond successfully. Ensure your… | console | warning | network, authentication, grouper, webservice |
| Cannot save a resource set with inconsistent scopes. | validation | error | uma, oauth, scope-validation, invalid-argument |
| Unable to resolve SignatureSigningParameters, response… | console | warning | saml, signing, credentials, keystore, cas |
| Could not decode provided Entity Certificate file | exception | error | spring, saml, x509, file-read, pem |
| Error parsing certificate for subject alt names | console | warning | x509, certificate, parsing, logging |
unsupported_response_type Unsupported response_type | error_code | error | oauth, response-type, unsupported-enum-value, authorization-request |
| cannot be authorized | exception | error | authentication, proxy-authentication, registered-service, url |
| Registered service template definition | console | warning | service-template, service-registry, merge, configuration |
| Unable to locate JSON web key for | console | warning | oidc, jwks, key-not-found, kid-mismatch |
| GraalVM native image executable is unable to discover… | console | warning | graalvm, native-image, service-registry, filesystem |
| [ ] is not eligible to authenticate as [ ] | console | warning | surrogate, impersonation, authorization, configuration |
| State [ : : ] does not have a matching transition for | exception | error | webflow, mfa, state-machine |
| Email registration is not enabled for | console | warning | mfa, email, webflow, configuration |
| Existing SOAP Envelope Body already contained children | console | info | saml, soap, encoder, opensusi, state |
invalid_request The presentation response could not be validated | console | error | oidc, verifiable-credentials, presentation, validation |
| Target class [ ] does not implement possible cacheable… | console | warning | reflection, cache, unsupported-operation |