apereo/cas
Documented errors, page 5 of 7. Back to apereo/cas
| Code / Message | Type | Severity | Tags |
|---|---|---|---|
| No credentials can be extracted to authenticate the REST… | exception | error | rest, authentication, credentials, http |
| not found in backing file. | exception | error | authentication, file, user-not-found, account-lookup |
| AccountPasswordMustChangeException | exception | warning | authentication, redis, password-expired |
| Could not locate RSA JSON web key from endpoint | exception | error | |
| Service [ ] attempted to proxy, but is not allowed. | exception | error | proxy-authentication, pgt, service-registry |
| Attribute definition contains a key property | console | warning | attribute-definition, misconfiguration, attribute-resolution, naming-conflict |
| Error encrypting using provider | console | warning | jasypt, jce, crypto, key-size |
| Invalid access token | http | error | oidc, http-401, access-token, jwks, scopes |
| Invalid sector identifier uri | validation | error | oidc, dynamic-client-registration, sector-identifier, validation |
| Missing field 'total' from the query results for [username] | exception | error | jdbc, sql-config, query-contract |
| Resource does not exist or is unreadable | exception | error | |
| Found a service definition | console | warning | duplicate, service-registry, config |
INVALID_PROXY_CALLBACK Failed to authenticate service credential | error_code | error | proxy-authentication, cas-protocol, credentials, ticket-validation |
| None of the TrustManagers can trust this client certificate… | exception | error | |
| Passwordless authentication has failed | exception | error | authentication, one-time-password, passwordless |
| Realm [ ] is not authorized for the identity provider realm… | exception | error | ws-federation, realm-mismatch, unauthorized-service |
| Token has expired | exception | error | jwt, token-expired, qr-authentication |
| Invalid unique index: must be >= 0 and < 256 | exception | error | tomcat, cluster, configuration, startup |
| Ticket-granting ticket expiration policy is set to ALWAYS… | console | warning | cas, expiration-policy, configuration, security |
| Code verification method is unrecognized: | exception | error | oauth2, pkce, validation |
| No Certificates provided | exception | critical | saml, x509, spring-bean, certificate |
| Proof iat is in the future | exception | error | jwt, iat, clock-skew, freshness, verifiable-credentials |
| Provided refresh token | validation | warning | oauth, refresh-token, ticket-expired, token-registry |
| Could not decode provided CRL file | exception | critical | saml, x509, crl, bean-creation, config |
| Provided scopes [ ] are undefined by OpenID Connect, which… | console | warning | oidc, scope, openid, compliance |
| Unable to build a MongoDb client without any hosts/servers… | exception | error | mongodb, configuration, startup |
| Invalid credentials | exception | error | ldap, authentication, password-policy |
| Unlimited certificate path length not allowed by… | exception | error | x509, certificate, path-length, configuration |
| Unsupported key type: | exception | error | oidc, jwks, jws, unsupported-key-type, crypto |
| Email address [ ] for [ ] is not valid | console | warning | email-validation, ldap, password-management |
| Failed to delete service definition file | console | warning | filesystem, file-delete, permissions |
| No password attribute found for | exception | error | mongodb, authentication, schema |
| Unable to accept request; issuer for endpoint(s) | console | error | oidc, discovery, issuer, http-404 |
| Using no-op password change implementation. Appropriate… | console | error | password-management, no-op, configuration, missing-dependency |
| Error reading certificate | exception | error | |
| Invalid cookie Required remote address does not match | exception | warning | cookie, ip-binding, geolocation, security |
| Script cache manager unavailable to handle LDAP filter | exception | error | ldap, groovy, missing-dependency |
| Multiple records found for [username] | exception | error | jdbc, data-integrity, duplicate-rows |
| Account has been disabled | exception | warning | jdbc, account-status, account-disabled |
| Endpoint for does not define a binding or location for… | exception | error | saml, idp, metadata, endpoint, empty-location |
| List of candidate multifactor authentication providers is… | exception | error | mfa, configuration, empty-collection |
| Service ticket [ ] is not assigned a valid ticket granting… | exception | error | tickets, service-ticket, tgt |
| Transformed username is null. | exception | error | authentication, username-transformation, principal-name |
| Unable to determine geolocation results for | console | warning | geolocation, ip-lookup, null-result |
| Account password on file does not match the provided… | exception | error | authentication, json-resource, password-mismatch, failed-login |
| Invalid signature | http | error | oidc, jwks, jws, signature-verification, http-401 |
| Missing required project metadata for | console | error | gradle, metadata, build, module |
| No authentication handlers could be resolved to support the… | exception | critical | java, authentication, handler-resolution |
| No client IP or user-agent was provided. Skipping adaptive… | console | warning | adaptive-authentication, client-info, bypass |
| Recaptcha score received is less than the threshold score… | console | warning | recaptcha, captcha, validation |
| Service [ ] is not found in service registry. | exception | error | service-registry, unauthorized-service, webflow |
| Unable to accept response status | exception | error | http, authentication, ip-intelligence, rest |
| Captcha value does not match, or CAS cannot unlock the… | exception | error | captcha, account-locked, password-management |
| File [ ] is does not exist, is not readable or is empty | console | warning | filesystem, cli, registered-services, validation |
| No metadata defined for entity | exception | error | oidc-federation, data-integrity, configuration |
| Account password on record for | console | error | redis, authentication, password-mismatch |
| Could not extract or decrypt an assertion based on the… | exception | error | ws-federation, assertion-extraction, token-decryption, malformed-token |
| Federation role [ ] is not supported for Trust… | exception | error | configuration, oidc-federation, invalid-role |
| None of the TrustManagers trust this server certificate… | exception | error | |
| Unable to locate user account | exception | error | mongodb, authentication, user-not-found |
| Authentication failed with status: | exception | error | yubikey, yubicloud, authentication, otp |
| Could not find value for mapped attribute | console | warning | ws-federation, attribute-release, claims-mapping |
| Provided location does not exist and is empty | exception | error | |
| Secret key for signing is not defined under | console | warning | signing, jwk, missing-config |
| Unable to accept username | exception | error | |
| Unable to resolve the encryption [public] key for entity id | exception | error | saml, encryption, public-key, metadata, sp |
access_denied Service [ ] requests authentication | error_code | error | oauth2, revocation, access-denied, authentication |
| No client credentials could be identified in this request | exception | error | oauth2, client-credentials, validation |
| Could not locate SP SSODescriptor in the metadata for | console | warning | saml, metadata, spssodescriptor, missing-role |
| Proof JWT is too old | exception | error | jwt, oidc, vc, clock-skew |
| Request is assigned an invalid device identifier | exception | error | qr-authentication, device-binding, jwt |
| Cannot read/load from subordinate directory | console | error | filesystem, io, startup |
| Multiple S3 objects where found in bucket | exception | error | saml, idp, aws, s3, metadata |
| Security token ticket | console | warning | ws-federation, ticket-expired, ticket-registry |
| Thread interrupted while waiting for connection to validate… | exception | warning | spnego, interrupted, threading, pool |
| Username is null. | exception | error | authentication, username, validation |
| Cannot update a resource set with inconsistent/mismatched… | validation | error | uma, oauth, resource-set, id-mismatch |
| Failed to locate the signing key | console | warning | metadata, signing, configuration |
| Unable to fetch [ ] | console | warning | x509, crl, certificate-revocation, resource-fetch |
| Cannot find metadata linked to | console | warning | saml, metadata, slo |
| Encoded password is null. | exception | error | authentication, password-encoding, encoder |
| No NameID could be determined based on the supported formats | console | warning | saml, saml-idp, nameid, attribute-release |
| Provided file [ ] does not match the recommended service… | console | warning | naming, service-registry, files |
| Resolved credentials for this transaction are empty | exception | critical | authentication, credentials, empty-input |
| Token has expired: and is after | exception | error | jwt, token-expired, claims-validation, clock-skew |
| Could not authenticate provided credentials | exception | error | ldap, bad-credentials, authentication |
| CRL data expired on [ ] | console | warning | x509, crl, expired, revocation |
| Invalid logo uri from an unknown host | validation | error | oidc, dynamic-client-registration, validation, uri |
| No RADIUS address is defined. RADIUS support will be… | console | warning | radius, configuration, missing-address |
| No recipient is provided with a valid email/phone | console | warning | webflow, password-reset, email, missing-attribute |
| Secret key for encryption is undefined under | console | warning | encryption, missing-config, keys |
| ServiceManagement: Unauthorized Service Access. Service | exception | error | service-registry, access-strategy, unauthorized-service, ticket-validation |
| Unable to verify credentials | validation | warning | oidc, jwt, signature-verification, client-authentication |
| Authentication handler is disabled | exception | error | java, authentication, disabled-handler |
| Generated key [ ] of size [ ]. The generated key MUST be… | console | info | keys, configuration, logging |
| logger.warn(message, throwable) | console | warning | logging, stack-trace, warn |
| Missing field value 'total' from the query results for… | exception | error | jdbc, sql-config, type-mismatch |
| Certificate keyUsage constraint forbids SSL client… | exception | error | x509, certificate, keyusage, authentication |
| Client IP [ ] is rejected for authentication because… | console | warning | risk-score, ip-intelligence, threshold, adaptive-authentication |
| Failed to save google authenticator account | console | error | rest, http, network, otp |