Your suggested change has been received. Thank you.

close

Suggest A Change

https://thales.na.market.dpondemand.io/docs/dpod/services/kmo….

back

NAE-XML Interface Development

Error Messages

search

Please Note:

Error Messages

This section lists the error messages that might be returned by the CipherTrust Manager. It covers the following information:

Overview

Errors are either fatal or non-fatal; in the case of fatal errors, the server closes the connection with the client. In the case of non-fatal errors, the connection remains open, and the client is able to continue making requests to the server. Fatal errors are numbered 1-999 and grouped as follows:

Error TypeFatal Error RangeNon-Fatal Error Range
General System Errors1-991001-1099
Parse Errors100-1991100-1199
Authentication Errors200-2991200-1299
Cryptographic Errors300-3991300-1399
Key Errors400-4991400-1499
User and Group Errors600-6991600-1699
Secret Object Errors1950-1999

The tables below list all the error numbers and messages that might be returned by the server.

General System Errors

This section lists general system errors.

Error NumberDescription
1Unknown server error.
2Out of memory.
40No licenses are installed.
45The feature required for this operation is not activated.
41All licenses are in use.
50SSL/TCP mismatch.
1001Operation not supported.
1002Failed to save configuration.

Parse Errors

This section lists parse errors.

Error NumberDescription
100Unrecognizable client request.
101Could not parse client request.
102Client request has invalid XML format.
103Header length cannot exceed 8192 bytes.
104Invalid or missing data section.
105Invalid data chunk.
106Invalid chunk size.
107Unsupported protocol version.
108Invalid request ID.
109Cannot negotiate version after previous requests.
110This request or tag is no longer supported.
111Administrative operations disallowed.
112Security settings do not allow key export.
113Key clone is not supported by this device.
114Cannot specify Version and AllVersions tag.
117Version key is not supported.
1100Invalid parameter value.
1103KeyVersion and AllVersions can only be specified with IDType :- Name.
1104Cannot specify both KeyName and KeyAlias.
1105Invalid alias name.
1106Invalid alias type.

Authentication Errors

This section lists authentication errors.

Error NumberDescription
200Missing username.
201Missing password.
202Invalid username or password.
203Cannot authenticate after previous requests.
204Username did not match client certificate.
205Could not connect to LDAP server.
206Missing credentials.
207Invalid authentication token.
208Authentication token has expired.
209User password has expired.
220Insufficient permissions.
221User is not authorized to perform this operation at this time.
230Authentication required.
231User must reauthenticate.
240Client certificate required.
241Invalid client certificate.
242Client certificate IP address field required.
243Invalid client certificate IP address field.
244Client IP address did not match client certificate IP address field.
245SSL connection failed (no shared ciphers)
264Need to authenticate.
280User is not authorized to connect to the SQL Parse Server.

Cryptographic Errors

This section lists cryptographic errors.

Error NumberDescription
300Could not perform cryptographic operation.
301Total data size is too long for this cipher.
302Total data size is not a multiple of cipher block size.
303Invalid padding; encrypted data may have been corrupted.
304Cryptographic operation failed in cipher update.
305Cryptographic operation failed in cipher final.
306Cryptographic operation failed in cipher operation.
307Cryptographic operation failed in cipher mac.
308Cryptographic operation failed in cipher macv.
309Cryptographic operation failed in cipher sign.
310Cryptographic operation failed in cipher signv.
320Failed to encode data in base 64.
321Encrypt all supports only DATASINGLE.
322Key version specified in the CryptoRequest does not match with the key version encrypting the data. You must encrypt and decrypt with the same version of the key.
1300Invalid or missing operations list.
1301Invalid or missing operation name.
1302Invalid operation.
1303Operation requires an algorithm.
1304Invalid operation/algorithm pair.
1320Invalid or missing algorithm.
1321Unknown algorithm.
1322Algorithm requires a key.
1323Invalid algorithm/key pair.
1324NAE certificate is not valid for crypto, because it is inactive or unsigned.
1327Key is not Symmetric Key
1330Invalid or missing derivation algorithm
1340Invalid IV.
1341Algorithm requires IV.
1342Algorithm does not require IV.
1343Invalid IV size.
1344Invalid or missing MAC value for MAC verification.
1345Invalid or missing signature value for signature verification.
1350Could not decode ciphertext header.
1360Invalid or missing data size.
1371Invalid or missing DB column ID.

Key Errors

This section lists key errors.

Error NumberDescription
400Failed to change key owner.
401Failed to set custom attributes.
402Duplicate custom attribute name found.
403Custom attribute value is not base 64 encoded.
404Exceeded maximum number of custom attributes.
405Exceeded maximum size for custom attribute name.
406Exceeded maximum size for custom attribute value.
407Exceeded maximum total size for custom attributes.
408Invalid owner name specified in request.
409Failed to create new key version.
410Exceeded maximum active versions.
411Invalid custom attribute name.
414Unsupported wrap format for key export.
419Invalid or empty wrap public key.
420Invalid or empty wrap format.
1107Cannot specify both WrapSymmetricKeyName and WrapKeyName.
1108Cannot specify both WrapKeyName and WrapPublicKey.
1400Invalid or missing key name.
1401Unknown key name or insufficient permissions.
1403Could not initialize key.
1404The key that was being used has been deleted or modified.
1405Invalid key version.
1406Key has no active versions.
1407Password is not base 64 encoded.
1412Invalid or missing IKM key name.
1413Key version state is allowed only for versioned key.
1420Could not generate key.
1421Could not import key.
1422Key already exists.
1423Invalid or missing key data.
1424Unsupported key size.
1425Invalid key size.
1426Invalid permissions.
1427Global key cannot have group permissions.
1428Maximum key capacity has been reached.
1429Invalid key state.
1430Weak DES key.
1431Invalid or Unsupported curve.
1432Missing curveID.
1435Invalid or Unsupported SALT value.
1436Invalid or Unsupported INFO value.
1440Key is not exportable.
1441Key export is not supported by this device.
1442Replication password not set.
1443Key is not asymmetric.
1444Cannot specify both WrapKeyName and WrapKey.
1445Invalid or missing wrapping algorithm.
1446Invalid or missing wrapping key name.
1447Invalid key format.
1448Password is only needed when key is exported in PKCS#12 format.
1449Password is required when key is exported in PKCS#12 format.
1450Key is not deletable.
1451Key cannot be deleted because it is used by one or more profiles.
1460Security settings do not allow global key usage.
1461Security settings do not allow this key size for this algorithm.
1462Security settings do not allow this key size for certificates.
1463Security settings do not allow RSA encryption or decryption.
1464Exceeded maximum number of keys for key query.
1472Secret Object is not a key.
1473Invalid ID Type.
1474A key with alias already exists.
1475Unknown key alias or insufficient permissions.
1476Key rotation frequency must be an integer greater than or equal to 0.
1477Duplicate alias found.
1478Could not delete default alias.
1479Invalid or missing charset.
1564Either Password or PasswordIdentifier must be provided for PBE Wrap.
1565Both Password and Password identifier cannot be passed simultaneously for PBE wrap.
1566Invalid Hash Algorithm.
1567Salt length should be at least 8 bytes for password based encryption.
1568Iteration should be in range of 1 to 1,00,00,000 for password based encryption.
1569Derive key length should be in range of 14 to 512 bytes for password based encryption.
1570Invalid WrapFormat specified.
1571RSA key encryption key size should be greater than or equal to RSA data encryption key size.
1572Minimum size of the RSA wrap key for RSA-AES-WRAP should be 2048-bit..
1573AES key size must be minimum 192-bit for RSA 4096-bit data encryption key.

Certificate Errors

This section lists certificate errors.

Error NumberDescription
1500Could not generate certificate request.
1501Could not sign certificate request.
1502Could not install certificate.
1510Unknown certificate request.
1511Unknown certificate.
1512Could not export certificate.
1520Invalid or missing certificate name.
1521Invalid or missing certificate.
1522Missing common name.
1523Invalid organization name.
1524Invalid organization unit name.
1525Invalid locality name.
1526Invalid state or province name.
1527Missing country name.
1528Invalid email.
1529Invalid or missing CA name.
1530Certificate or key already exists with this name.
1531Certificate name cannot be '.' and cannot contain '..' or '/'.
1532Certificate name cannot be longer than 64 characters.
1533Key size must be 768, 1024, or 2048.
1534Country name must be two characters.
1535Common name cannot be longer than 64 characters.
1536Common name cannot be blank.
1537Email cannot be longer than 40 characters.
1540Unknown certificate.
1541Failed to load certificate for export.
1542Only certificates allow a subject.
1543Certificate requires a subject.
1544Only certificates allow extensions.
1545Unsupported extension.
1546Invalid or missing certificate data format.
1547Key is not a certificate request.
1548Key is not a certificate.
1549Invalid or missing certificate usage.
1550Invalid or missing certificate expiry.
1561Certificate authority not found.

User and Group Errors

This section lists user and group errors.

Error NumberDescription
1600Missing username.
1601Invalid username.
1602User already exists.
1603User does not exist.
1604'Global' user cannot be created.
1620Missing password.
1621Invalid password.
1622Password is too weak.
1640Missing group name.
1641Invalid group name.
1642Group already exists.
1643Group does not exist.
1660Cannot delete the owner of a key.
1670Operation not supported with LDAP user directory.

Backend Request Errors

This section lists backend request errors.

Error NumberDescription
1800Communication failure.

Record Event Errors

This section lists backend request errors.

Error NumberDescription
1900Message size not specified.
1901Invalid message size.
1902Invalid or missing message.
1903Exceeded message size.

Secret Object Errors

Error NumberDescription
1950Secret Object already exists.
1951Could not import Secret Object.
1952Missing Secret Object name.
1953Invalid or missing Secret Object type.
1954Invalid or missing Secret Object data.
1955Unknown Secret Object name or insufficient permissions.
1956Secret Object is not exportable.
1957Secret Object is not deletable.
1958Global secret object cannot have group permissions.
1959Cannot specify both ObjectName and Alias.
1960Duplicate alias found.
1961A Cryptographic object with alias already exists.
1962Unknown secret alias or insufficient permissions.