My Oracle Support Banner

Integrating Oracle Process Cloud (OPC) with Identity Cloud Service (IDCS) using email address as the user identifier gives and InvalidNameIDPolicy (Doc ID 2390369.1)

Last updated on SEPTEMBER 27, 2023

Applies to:

Identity Cloud Service (IDCS) - Version N/A and later
Information in this document applies to any platform.

Symptoms

Integrating Identity Cloud Service as the IdP with Oracle Process Cloud as the SP using the email address as the nameid when testing the federation from OPC (SP initiated federation) fails with the following screen:

 The SAML response contains an InvalidNameIDPolicy status

<samlp:Response ...

...

<samlp:Status>
<samlp:StatusCode Value="urn:oasis:names:tc:SAML:2.0:status:Requester">
<samlp:StatusCode Value="urn:oasis:names:tc:SAML:2.0:status:InvalidNameIDPolicy"/>
</samlp:StatusCode>
</samlp:Status>
</samlp:Response>

 

If we look at the IDCS logs we will see the following:

NameID policy urn:oasis:names:tc:SAML:1.1:nameid-format:emailAddress is not supported for partner Oracle Process Cloud.

 

Cause

To view full details, sign in with your My Oracle Support account.

Don't have a My Oracle Support account? Click to get started!


In this Document
Symptoms
Cause
Solution
References


My Oracle Support provides customers with access to over a million knowledge articles and a vibrant support community of peers and Oracle experts.