My Oracle Support Banner

Integrating Oracle Process Cloud (OPC) with Identity Cloud Service (IDCS) using email address as the user identifier gives and InvalidNameIDPolicy (Doc ID 2390369.1)

Last updated on APRIL 24, 2018

Applies to:

Identity Cloud Service (IDCS) - Version N/A and later
Information in this document applies to any platform.

Symptoms

Integrating Identity Cloud Service as the IdP with Oracle Process Cloud as the SP using the email address as the nameid when testing the federation from OPC (SP initiated federation) fails with the following screen:

 The SAML response contains an InvalidNameIDPolicy status

<samlp:Response ...

...

<samlp:Status>
<samlp:StatusCode Value="urn:oasis:names:tc:SAML:2.0:status:Requester">
<samlp:StatusCode Value="urn:oasis:names:tc:SAML:2.0:status:InvalidNameIDPolicy"/>
</samlp:StatusCode>
</samlp:Status>
</samlp:Response>

 

If we look at the IDCS logs we will see the following:

NameID policy urn:oasis:names:tc:SAML:1.1:nameid-format:emailAddress is not supported for partner Oracle Process Cloud.

 

Changes

 

Cause

To view full details, sign in with your My Oracle Support account.

Don't have a My Oracle Support account? Click to get started!


My Oracle Support provides customers with access to over a million knowledge articles and a vibrant support community of peers and Oracle experts.