Integrating Oracle Process Cloud (OPC) with Identity Cloud Service (IDCS) using email address as the user identifier gives and InvalidNameIDPolicy
(Doc ID 2390369.1)
Last updated on SEPTEMBER 27, 2023
Applies to:
Identity Cloud Service (IDCS) - Version N/A and laterInformation in this document applies to any platform.
Symptoms
Integrating Identity Cloud Service as the IdP with Oracle Process Cloud as the SP using the email address as the nameid when testing the federation from OPC (SP initiated federation) fails with the following screen:
The SAML response contains an InvalidNameIDPolicy status
<samlp:Response ...
...
<samlp:Status>
<samlp:StatusCode Value="urn:oasis:names:tc:SAML:2.0:status:Requester">
<samlp:StatusCode Value="urn:oasis:names:tc:SAML:2.0:status:InvalidNameIDPolicy"/>
</samlp:StatusCode>
</samlp:Status>
</samlp:Response>
If we look at the IDCS logs we will see the following:
Cause
To view full details, sign in with your My Oracle Support account. |
|
Don't have a My Oracle Support account? Click to get started! |
In this Document
Symptoms |
Cause |
Solution |
References |