apereo/cas
Documented errors, page 3 of 7. Back to apereo/cas
| Code / Message | Type | Severity | Tags |
|---|---|---|---|
| The service definition file could not be saved at | exception | error | service-registry, io, filesystem, persistence |
| Unable to resolve service provider assertion consumer… | console | error | saml, metadata, acs-url, unsolicited-sso, cas |
| Google Authenticator scratch codes encryption key is not… | console | warning | gauth, crypto, scratch-codes, missing-key |
| Invalid cookie . Required fields are missing | exception | error | |
| No (successful) logout response received from the url | console | warning | http, logout, oidc, network |
| No values remaining for attribute | exception | error | x509, principal-resolution, configuration, state |
| Proof JWT signature validation failed | exception | error | jwt, signature, key-mismatch, oidc, verifiable-credentials |
| Service with client id is configured to encrypt tokens, yet… | exception | error | oidc, jwks, encryption, configuration |
| Shibboleth IdP url is not specified; External… | console | warning | configuration, shibboleth, sso, missing-property |
| SPNEGO Authorization header | console | warning | spnego, http-header, kerberos, auth-scheme |
| Assertion failed | exception | error | webauthn, authentication, assertion-validation |
| LDAP response is not found or does not contain a result… | console | warning | ldap, surrogate, empty-result, impersonation |
| Unable to locate signing credentials | exception | critical | saml, signing, credentials, keystore, fingerprint |
| Unable to use 'none' as introspection encryption algorithm | exception | error | oidc, introspection, encryption, misconfiguration, none-alg |
| Unknown realm: | exception | error | ws-trust, sts, configuration |
| Failed to acquire access token | exception | error | azure-ad, oauth2, email, network |
| No assertion consumer service could be found for entity | exception | error | saml, idp, metadata, acs, openid-connector |
| No ticket-granting ticket could be found in the context | exception | error | |
| Proof nonce is invalid or missing | exception | error | oidc, verifiable-credentials, nonce, jwt, replay-protection |
| Credential principal | exception | error | mfa, authentication, principal-mismatch, security |
| Unauthorized | exception | error | unauthorized-service, service-registry, cas, access-control |
| Metadata directory location cannot be located/created | exception | critical | saml, idp, git, metadata, filesystem |
| not in allowed range. | exception | error | remote-address, ip-range, authentication, network |
| Proof audience does not match credential issuer | exception | error | jwt, audience, oidc, verifiable-credentials, config-mismatch |
| Unexpected multiple people returned from person attribute… | console | error | person-attribute-dao, duplicate-records, unique-constraint, attribute-resolution |
| Could not validate the provided assertion | exception | error | ws-federation, assertion-expired, clock-skew, saml-conditions |
| Delegated authentication policy for | console | warning | pac4j, delegated-authentication, authorization-policy, registered-service |
| Principal resolution handled by | console | warning | authentication, principal-resolution, fatal-config |
| Unable to get entity from MDQ server and a backup file does… | exception | error | saml, mdq, metadata, network, http |
| Unable to login from this location | exception | error | authentication, ip-restriction, json-resource, access-control |
| Could not locate service definition by id | http | warning | rest, http-404, services-management, delete |
| Deserialization error | exception | error | deserialization, java-io, webflow, session-state |
| InvalidTicketException | exception | error | rest, cas, ticket-registry, expired-ticket |
| Configuration file [ ] is not readable/writable or is not a… | console | warning | filesystem, permissions, configuration, cli |
| Configuration specifies checkKeyUsage but keyUsage… | console | warning | x509, key-usage, certificate-validation |
| Invalid cookie . Required user-agent does not match | exception | error | cookie, user-agent, security, session |
| Link [ ] is not valid and is not part of the interrupt… | console | error | interrupt, webflow, unauthorized, link-validation |
| No groovy script cache manager is available to execute… | exception | error | groovy, ws-federation, attribute-release, missing-dependency |
| No groups could be found for | console | error | grouper, authorization, access-control, empty-result |
| Resource does not exist or is unreadable | exception | error | saml, metadata, file-not-found, filesystem |
| Could not locate RSA JSON web key from keystore | exception | error | |
| Issuer [ ] is invalid since the expected issuer should be [… | console | warning | wsfederation, sso, issuer-validation, adfs |
| No client id is provided in the request | validation | error | oauth, password-grant, missing-client-id, token-endpoint |
| Secret key for encryption defined under | console | warning | encryption, key-size, base64 |
| Unable to successfully fetch JWKS resource from | console | warning | http, network, jwks, rest |
| Attribute [ ] not found or has no values | console | warning | ldap, surrogate, missing-attribute, impersonation |
| CIBA request is not ready to grant access tokens | exception | warning | oidc, ciba, authorization-pending, polling |
invalid_grant Access token validation failed for request | error_code | error | oauth, token-endpoint, invalid-grant, request-validation |
| Unable to create folder | console | warning | filesystem, mkdir, startup, temp-directory |
| Unable to query OSV vulnerability details for | console | warning | osv, vulnerability-scan, network, http |
| Expected instance of ClientFlowExecutionKey but got | exception | error | |
| Invalid client credentials provided for registered service: | exception | error | oauth2, client-authentication, bad-credentials |
| No registration records could be found for | console | warning | webauthn, mfa, registration, webflow |
| Service [ ] is not authorized | http | error | authorization, http-403, service-management |
| Unable to register multiple devices for | console | warning | mfa, otp, device-registration, configuration |
| Unknown Duo Security authentication attempt | exception | error | duo, mfa, credential, webflow |
| Encryption/Signing is not enabled explicitly in the… | console | warning | configuration, cookie-crypto, delegated-authentication, pac4j |
| Private key JWT authentication method is not enabled for… | validation | warning | oidc, jwt, client-authentication, configuration |
| Resource [ ] cannot be located | console | warning | saml, file-not-found, metadata, signature-validation |
screen.service.error.message Unauthorized | exception | error | authentication, service-ticket, authorization |
| Service access for [ ] is denied | console | warning | pac4j, delegated-authentication, service-access, authorization |
| Storing trusted device records in runtime memory. Changes… | console | warning | configuration, mfa, persistence, in-memory-storage |
| Subject id [ ] could not be located. | console | warning | grouper, web-service, subject-not-found, empty-result |
| cannot reuse OTP | exception | error | gauth, otp, replay, mfa |
| Cookie name is undefined | exception | error | cookie, configuration, web |
| Duo Security passcode authentication has failed | exception | error | duo, mfa, passcode, failed-login |
| Notification [ ] sent to [ ] rejected with error: [ ] | console | warning | apns, push-notification, ios |
| Private key located from endpoint for key id is undefined | exception | error | |
| Error decoding flow execution | exception | error | |
| Invalid OIDC pushed authorization request at | console | warning | oidc, par, validation, http-403 |
| logger.warn(message, throwable) (or summarized stack trace) | console | warning | logging, stack-trace, warn |
| Provided token is not issued by and does not belong to | exception | error | authentication, one-time-token, webflow |
| Unauthorized account registration attempt for id | exception | error | gauth, webflow, mfa, registration |
| User already exists | exception | error | webauthn, registration, duplicate-user |
| Account registration is not verified for | exception | warning | webflow, mfa, registration, state |
| Cannot update a resource set without identifiers. | validation | error | uma, oauth, resource-set, missing-identifier |
| Encrypted Value: [ ] Decryption Failed | console | warning | jasypt, encryption, cli, crypto |
| Unable to authenticate request to register service | exception | error | rest, cas, authentication, service-management |
| Authentication cannot find attribute | console | warning | pac4j, delegated-authentication, principal-attribute, attribute-release |
| Skipped registration of | console | warning | saml, metadata, entity-descriptor |
| Invalid cookie . Required remote address does not match | exception | warning | cookie, ip-binding, security, invalid-cookie |
| Unable to authenticate | exception | error | java, authentication, password-policy |
| Could not authenticate the provided credentials | exception | error | oauth2, authentication, password |
| DPoP proof has already been used: | exception | error | oauth2, dpop, replay, security |
| Either client certificate could not be determined, or a… | exception | error | x509, certificate-authentication, trust-store, failed-login |
| Provided signing key as a JSON web key does not carry a… | exception | error | |
| Interrupt webflow cookie encryption/signing is not enabled… | console | info | configuration, crypto, cookie, interrupt |
| Metadata artifacts are available at the specified location | console | warning | saml, cli, idempotency, metadata |
| No storage service is configured to handle the account… | console | warning | password-management, configuration, missing-bean |
| Principal assigned to token | exception | error | mfa, authentication, principal-mismatch, security |
| Ticket passed is null and cannot be decoded | console | warning | tickets, null-value, decryption, registry |
| Unable to verify JWT assertion with any of the configured… | exception | error | oidc, jwt, signature-verification, authentication |
| Cannot login user using CAS internal authentication | exception | error | oauth2, authentication, wrapped-exception |
| [ ] does not match the recommended pattern [ ]. While CAS… | console | warning | naming, service-registry, files |
| Ticket registry encryption/signing for | console | warning | configuration, crypto, ticket-registry, signing |
| Unable to find account | exception | error | cassandra, authentication, account-not-found |
| Unexpected LDAP error | exception | error | ldap, network, connection |
| Object value [ ] assigned to [ ] is not serializable and… | console | warning | pac4j, session-store, serialization, ticket-registry |
| Radius authentication failed | exception | error | radius, network, cas |
| Ticket is too late because it's retrieved on | console | warning | wsfederation, token-expired, clock-skew, sso |