Updated on 2024-04-10 GMT+08:00

Error Codes

If an error code starting with APIGW is returned after you call an API, rectify the fault by referring to the instructions provided in API Gateway Error Codes.

Status Code

Error Code

Error Message

Description

Solution

400

IdentityCenter.400

Bad Request: {0}.

Invalid request parameter.

Check whether the request parameter is correct.

404

IdentityCenter.400

Bad Request: {0}.

Invalid request parameter.

Check whether the request parameter is correct.

404

IdentityCenter.404

Not Found: {0}.

Resource not found.

Check whether the resource exists.

403

IdentityCenter.1000

No permission for action {0}.

Insufficient permissions.

Check whether you have required permissions.

403

IdentityCenter.1001

Access denied: {0}

The dependent API cannot be accessed.

Check whether you have required and dependent permissions.

404

IdentityCenter.1002

Bad Request: {0}.

Invalid request parameter.

Check whether the request parameter is correct.

403

IdentityCenter.1003

Bad Request: {0}.

Invalid request parameter.

Check whether the request parameter is correct.

403

IdentityCenter.1004

Bad Request: {0}.

Invalid request parameter.

Check whether the request parameter is correct.

409

IdentityCenter.1006

Concurrency conflicts. Try again later.

Concurrency conflicts. Try again later.

Check whether the request parameters conflict and try again.

409

IdentityCenter.1007

Data modification failed.

Modification failed.

Check whether any data conflicts occur.

409

IdentityCenter.1204

The permission set already exists.

Permission set already created.

Check whether the permission set has already been created.

404

IdentityCenter.1205

The permission set does not exist.

Permission set not found.

Check whether the permission set exists.

409

IdentityCenter.1206

A permission set with the same name already exists.

Duplicate permission set name.

Check whether the permission set with the same name has already been created.

409

IdentityCenter.1207

Duplicate system-defined policy or identity policy.

Duplicate system-defined policy or identity policy.

Check whether the same system-defined policy or identity policy has been attached to the permission set.

500

IdentityCenter.1209

Bad Request:{0}.

Organizations operation error.

Contact technical support.

400

IdentityCenter.1210

Account not found.

Account not found.

Check whether the account exists and is managed in Organizations.

409

IdentityCenter.1210

The permission set has been attached to accounts and cannot be deleted.

The permission set has been attached to accounts and cannot be deleted.

Detach the permission set and try again.

404

IdentityCenter.1211

System-defined policy or identity policy not found.

System-defined policy or identity policy not found.

Check whether the system-defined policy or identity policy has been attached to the permission set.

404

IdentityCenter.1212

Request ID not found.

Request identified by the ID not found.

Check whether the request ID is correct.

400

IdentityCenter.1214

Region not registered in the service.

Region not registered.

Check whether the region has been registered.

403

IdentityCenter.1215

This operation is available only for the organization's administrator.

Only the Organizations administrator has permission to perform this operation.

Log in as the Organizations administrator and try again.

409

IdentityCenter.1216

Only one region can be registered.

Only one region can be registered.

Check whether another region has been registered.

404

IdentityCenter.1217

HTTP request header {0} not found.

HTTP request header not found.

Check whether the required HTTP request header is contained.

400

IdentityCenter.1218

Invalid X-Request-Proof request header.

Invalid request proof header.

Check whether the request proof header is correct.

400

IdentityCenter.1219

Failed to obtain the identity token.

Failed to obtain the temporary credential.

Check whether the request proof header used to obtain the temporary credential is correct.

403

IdentityCenter.1219

Failed to obtain the identity token.

Failed to obtain the temporary credential.

Check whether the request proof header used to obtain the temporary credential is valid.

400

IdentityCenter.1220

Failed to create service-linked agencies. Try again later.

Failed to create service-linked agencies. Try again later.

Check whether the request parameter is correct.

400

IdentityCenter.1221

Failed to enable trusted services. Try again later.

Failed to enable the trusted service. Failed to integrate IAM Identity Center with Organizations.

Check whether the request parameter is correct.

409

IdentityCenter.1222

IAM Identity Center has been enabled in another region.

Account ID already in use.

Check whether a service instance has been created for the account.

400

IdentityCenter.1223

Organizations not enabled.

Organizations not enabled.

Enable Organizations first.

404

IdentityCenter.1225

Failed to update the permission set status because the permission set is not attached to accounts.

Authentication failed because the permission set is not attached to the account.

Attach the permission set to the account.

400

IdentityCenter.1227

Identity store creation failed.

Failed to create the identity source.

Check whether the request parameter is correct.

500

IdentityCenter.1227

Identity store creation failed.

Failed to create the identity source.

Contact technical support.

400

IdentityCenter.1228

Identity store deletion failed.

Failed to delete the identity source.

Check whether the request parameter is correct.

500

IdentityCenter.1229

No service instance can be deleted.

Failed to delete the identity source.

Contact technical support.

400

IdentityCenter.1230

Service-linked agency deletion failed.

Failed to delete the service-linked agency.

Check whether the request parameter is correct.

400

IdentityCenter.1231

Failed to query the groups which the user belongs to.

Failed to query the groups where the user is added.

Check whether the request parameter is correct.

500

IdentityCenter.1231

Failed to query the groups which the user belongs to.

Failed to query the groups where the user is added.

Contact technical support.

400

IdentityCenter.1236

Invalid {0}

Invalid parameter.

Check whether the request parameter is valid.

403

IdentityCenter.1242

please open the service instance first!

Service instance not enabled.

Enable the service instance first.

400

IdentityCenter.1243

Failed to create the trust agency.

Failed to create the trust agency.

Check whether the request parameter is correct.

400

IdentityCenter.1244

Authentication failed.

Failed to check permissions.

Check whether the request parameter is correct.

403

IdentityCenter.1244

Authentication failed.

Failed to check permissions.

Check whether you have permission to perform this operation.

500

IdentityCenter.1244

Authentication failed.

Failed to check permissions.

Contact technical support.

400

IdentityCenter.1245

Only one instance can be provisioned.

Only one instance can be enabled.

Check whether the instance has been enabled.

400

IdentityCenter.1246

System-defined identity policy whose ID is {0} not found.

System-defined identity policy whose ID is {policyId} not found.

Check whether the ID of the system-defined identity policy is correct.

500

IdentityCenter.1247

Failed to delete the trust agency.

Failed to delete the trust agency.

Contact technical support.

500

IdentityCenter.1248

Failed to query the trust agency.

Failed to query the trust agency.

Contact technical support.

400

IdentityCenter.1249

Deletion failed. Associated account not found.

Associated account is not found and cannot be deleted.

Check whether the permission set is attached to the account.

400

IdentityCenter.1250

Associated principal is not found and cannot be deleted.

Associated principal is not found and cannot be deleted.

Check whether the permission set is attached to the principal.

400

IdentityCenter.1252

Incorrect format of the X-Request-Proof request header.

Failed to parse the HTTP authorization header.

Check whether the format of the HTTP authorization header is correct.

400

IdentityCenter.1253

Failed to deregister the region because an associated service instance exists.

The region cannot be deleted when the service instance exists.

Disable the service instance first.

404

IdentityCenter.1254

No region registered.

Registered region not found.

Check whether the region has been registered.

409

IdentityCenter.1257

Duplicate entity objects.

Duplicate entity objects.

Check whether the data already exists.

400

IdentityCenter.1258

The start time cannot be later than the end time.

The start time cannot be later than the end time.

Ensure that the start time is earlier than the end time.

404

IdentityCenter.1259

Service instance not found.

Instance not found.

Check whether the service instance is created.

500

IdentityCenter.1260

Internal server error.

Internal service error.

Contact technical support.

400

IdentityCenter.1261

Failed to obtain the identity store information.

Failed to query the connected identity source.

Check whether the identity source exists.

404

IdentityCenter.1000

no permission to bind account.

You do not have permission to attach the account.

Check whether the account has been added to Organizations.

409

IdentityCenter.1000

This account does not have this service instance.

The service instance is not found in this account.

Check whether the account ID and instance ID are correct.

409

IdentityCenter.1261

Permanent delete sdr meter db data field.

Failed to permanently delete data fields from the SDR meter database.

Check whether the SDR meter data exists.

400

IdentityCenter.1263

The account has not applied for OBT.

The account has not applied for OBT.

Apply for an OBT first.

400

IdentityCenter.1264

Account tag query failed.

An error occurred in account tag query.

Check whether the request parameter is correct.

403

IdentityCenter.1265

HTTP request header not found.

HTTP request header not found.

Check whether the required HTTP request header is contained.

400

IdentityCenter.1266

HTTP request header not found.

Invalid HTTP request header.

Check whether the HTTP request header is valid.

400

IdentityCenter.1269

fail request for assume with service principal.

Failed to obtain the agency credential.

Check whether the request parameter is correct.

403

IdentityCenter.1269

fail request for assume with service principal.

Failed to obtain the agency credential.

Check whether you have permission to perform this operation.

400

IdentityCenter.1270

Failed to obtain the MFA settings of the identity store.

Failed to obtain the MFA settings of the identity source.

Check whether the request parameter is correct.

409

IdentityCenter.1270

The alias can be modified only once.

Identity source ID alias has been created.

Check whether the identity source ID alias has been created.

400

IdentityCenter.1271

Failed to update the MFA settings of the identity store.

Failed to update the MFA settings of the identity source.

Check whether the request parameter is correct.

409

IdentityCenter.1271

The alias already exists.

Duplicate identity source ID alias.

Change the alias.

403

IdentityCenter.1272

No permission to perform this operation.

You do not have permission to enable or disable the service instance.

Check whether you have required permissions.

400

IdentityCenter.1273

The identity store does not belong to the account.

The identity source does not belong to the account.

Check whether the identity source belongs to the corresponding management account.

403

IdentityCenter.1273

The operation is not allowed because the account is frozen.

Account frozen. Operation not allowed.

Check whether the account is frozen.

403

IdentityCenter.1274

The operation is not allowed because the account is restricted.

Account restricted. Operation not allowed.

Check whether the account is restricted.

400

IdentityCenter.1275

The region is invalid or IAM Identity Center cannot be enabled in the region.

The region is invalid or IAM Identity Center cannot be enabled in this region.

Check whether the region is valid.

400

IdentityCenter.1276

Service instance not found.

Instance not found.

Check whether the request parameter is correct.

404

IdentityCenter.1276

Service instance not found.

Instance not found.

Check whether the instance exists.

400

IdentityCenter.1277

Agency creation failed.

Failed to create the agency.

Check whether the request parameter is correct.

500

IdentityCenter.1278

Agency deletion failed.

Failed to delete the agency.

Contact technical support.

500

IdentityCenter.1279

Role query failed.

Failed to query the policy.

Contact technical support.

500

IdentityCenter.1280

Agency query failed.

Failed to query the agency.

Contact technical support.

404

IdentityCenter.1281

Role ID {roleId} not found.

Role ID {roleId} not found.

Check whether the role ID exists.

409

IdentityCenter.1282

A conflict occurred during the service-linked agency creation. Try again later.

A conflict occurred during the service-linked agency creation. Try again later.

Check whether any conflicts occur during the service-linked agency creation and try again later.

400

IdentityCenter.1284

Failed to process Organizations broadcast messages.

An error occurred when IAM Identity Center consumes Organizations events.

Check whether the request parameter is correct.

403

IdentityCenter.1284

Failed to process Organizations broadcast messages.

An error occurred when IAM Identity Center consumes Organizations events.

Check whether permissions are sufficient.

500

IdentityCenter.1284

Failed to process Organizations broadcast messages.

An error occurred when IAM Identity Center consumes Organizations events.

Contact technical support.

400

IdentityCenter.1285

Custom role creation failed.

Failed to create the custom policy.

Check whether the custom policy is correct.

400

IdentityCenter.1286

Custom role update failed.

Failed to update the custom policy.

Check whether the custom policy is correct.

500

IdentityCenter.1287

Custom role deletion failed.

Failed to delete the custom policy.

Contact technical support.

500

IdentityCenter.1290

Authorization association not found.

Authorization association not found.

Contact technical support.

403

IdentityCenter.1291

The target account does not belong to the organization.

The target account does not belong to the organization.

Check whether the target account is in the organization.

400

IdentityCenter.1293

Size limit exceeded. A policy content can contain a maximum number of 6,144 characters.

The size of the policy content exceeds the upper limit.

Check whether the policy content is too large.

500

IdentityCenter.1300

Internal server error.

Internal service error.

Contact technical support.

409

IdentityCenter.1301

Failed to create another identity store because an identity store has been configured for the service instance.

The instance already has an identity source connected.

Check whether the instance has an identity source connected.

400

IdentityCenter.1302

Account not found.

No Organizations information found for the account.

Check whether the request parameter is correct.

400

IdentityCenter.1303

Organizations not enabled.

Organizations not enabled.

Enable Organizations first.

500

IdentityCenter.1304

Bad Request: {0}.

Organizations operation error.

Contact technical support.

403

IdentityCenter.1305

This operation is available only for the organization's administrator.

Only the Organizations administrator has permission to perform this operation.

Log in as the Organizations administrator and try again.

409

IdentityCenter.1306

The {0} is associated with an account. Disassociate the account and try again.

The principal is associated with an account. Disassociate the account and try again.

Disassociate the principal from the account and try again.

404

IdentityCenter.1307

Principal not found or principal type not correct.

Principal not found or principal type not correct.

Check whether the principal exists and whether the principal type is correct.

400

IdentityCenter.1308

Identity store not found.

Identity source not found.

Check whether the identity source ID is correct.

404

IdentityCenter.1308

Identity store not found.

Identity source not found.

Check whether the identity source exists.

500

IdentityCenter.1309

Failed to obtain the access token.

Failed to obtain the PKI token.

Contact technical support.

400

IdentityCenter.1310

Duplicate username or email address.

Duplicate username or email address.

Try another username or email address.

400

IdentityCenter.1311

The maximum number of allowed users has been reached.

The maximum number of users allowed in the identity source has been reached.

Check the user quota. If the quota does not meet your requirements, apply for a higher quota.

404

IdentityCenter.1312

User not found.

User not found.

Check whether the user exists.

404

IdentityCenter.1313

User extended attributes not found.

User extended attributes not found.

Check whether the user attributes are complete.

400

IdentityCenter.1314

Invalid password.

The password complexity does not meet requirements.

Use a more complex password.

400

IdentityCenter.1315

The password cannot be the same as the old password or one-time password.

The new password must be different from the old password and one-time password.

Enter another password.

404

IdentityCenter.1316

Unique user ID not found.

Unique user ID not found.

Check whether the request parameter is correct.

400

IdentityCenter.1317

User disabled.

Repeat disablement.

Check whether the object has already been disabled.

400

IdentityCenter.1318

User enabled.

Repeat enablement.

Check whether the object has already been enabled.

400

IdentityCenter.1319

Login credentials cannot be verified. Please try again.

Incorrect username or password.

Check whether the login credential is correct and try again.

404

IdentityCenter.1319

we couldn't verify your sign-in credentials. please try again.

Username or password not found.

Check whether the username or password exists.

400

IdentityCenter.1320

User disabled.

User disabled.

Check whether the user is enabled.

400

IdentityCenter.1321

duplicate email.

Duplicate email address.

Try another email address.

500

IdentityCenter.1322

Algorithm not found: {0}.

Algorithm not found.

Contact technical support.

400

IdentityCenter.1324

The new password must be different from the username.

The new password must be different from the username.

Enter another password.

400

IdentityCenter.1325

Invalid one-time password.

Invalid one-time password.

Check whether the one-time password is correct.

500

IdentityCenter.1326

Internal server error: {0}.

Internal service error.

Contact technical support.

400

IdentityCenter.1327

Invalid metadata.

Invalid SAML metadata.

Check whether the request parameter is correct.

400

IdentityCenter.1328

IdP configuration already exists.

IdP configuration already exists and cannot be created again.

Check whether the IdP configuration already exists.

400

IdentityCenter.1329

The IdP configuration status is incorrect.

The IdP configuration status is incorrect.

Check whether the IdP configuration status is correct.

404

IdentityCenter.1330

IdP configuration not found.

IdP configuration not found.

Check whether the IdP configuration exists.

400

IdentityCenter.1331

IdP tenant already exists.

IdP tenant already exists.

Check whether the IdP tenant already exists.

404

IdentityCenter.1332

Tenant ID not found.

IdP tenant not found.

Check whether the IdP tenant exists.

400

IdentityCenter.1333

Failed to delete the tenant because it is associated with a bearer token.

Failed to delete the provisioning tenant because it is associated with a token.

Delete the token first.

404

IdentityCenter.1334

Bearer token ID not found.

Token not found.

Check whether the token exists.

400

IdentityCenter.1335

The maximum number of allowed bearer tokens has been reached.

The maximum number of tokens has been reached.

Check the token quota.

400

IdentityCenter.1336

Username verification failed.

Incorrect username.

Check whether the request parameter is correct.

403

IdentityCenter.1337

No permission for action {0}.

No sufficient permissions.

Check whether you have permission to perform this operation.

403

IdentityCenter.1338

Request parameter is required.

The parameter value cannot be empty.

Check whether the parameter is correct.

403

IdentityCenter.1339

Service instance not found.

Parameter error. Service instance not found.

Check whether the parameter is correct.

409

IdentityCenter.1341

Duplicate display name of the group.

The display name of the group already exists.

Try another display name.

409

IdentityCenter.1342

Duplicate entity objects.

Failed to insert data into the database.

Check whether the data already exists.

404

IdentityCenter.1343

Group not found.

Group not found.

Check whether the group exists.

400

IdentityCenter.1344

The query condition must be an external ID or a unique attribute, and they cannot be specified at the same time.

Invalid alternative identifier.

Set the alternative identifier to external_id or unique_attribute.

400

IdentityCenter.1348

The query condition must be an external ID or a unique attribute, and they cannot be specified at the same time.

Either external_id or unique_attribute is required.

Check whether the alternative identifier uses only one condition.

404

IdentityCenter.1349

The attribute_path must be unique.

The path attribute must be unique.

Ensure that the path attribute is unique.

400

IdentityCenter.1351

The maximum number of allowed groups has been reached.

The maximum number of groups allowed in the identity source has been reached.

Check the group quota. If the quota does not meet your requirements, apply for a higher quota.

400

IdentityCenter.1352

The identity store does not belong to the account.

The identity source does not belong to the account.

Check whether the identity source belongs to the corresponding management account.

400

IdentityCenter.1353

The display name of the group is required.

The display name of the user group cannot be empty.

Check whether the display name of the user group is valid.

400

IdentityCenter.1370

The association between users and groups already exists.

The group membership already exists.

Check whether the user has been added to the group.

404

IdentityCenter.1371

The association between users and group does not exist.

Membership identified by the ID not found.

Check whether the membership association ID is correct.

400

IdentityCenter.1372

Group not found.

Group not found.

Check whether the group exists.

404

IdentityCenter.1372

Group not found.

Group not found.

Check whether the group exists.

400

IdentityCenter.1373

User not found.

User not found.

Check whether the user exists.

404

IdentityCenter.1373

User not found.

User not found.

Check whether the user exists.

404

IdentityCenter.1374

The association between users and group does not exist.

Group membership not found.

Check whether the user is added to the group.

404

IdentityCenter.1375

Group member not found.

Member not found.

Check whether all requested members exist.

400

IdentityCenter.1380

The start time cannot be later than the end time.

The start time must be earlier than the end time.

Ensure that the start time is earlier than the end time.

500

IdentityCenter.1381

Request processing failed due to an unknown error, exception, or fault on the internal server.

Request processing failed due to an unknown error, exception, or fault on the internal server.

Contact technical support.

409

IdentityCenter.1382

Permanent delete db data field.

Failed to permanently delete database data fields.

Check whether the data already exists.

400

IdentityCenter.1383

The account has not applied for OBT.

Beta account ID required.

Use a beta account.

400

IdentityCenter.1384

Account tag query failed.

An error occurred in account tag query.

Check whether the request parameter is correct.

404

IdentityCenter.1385

HTTP request header not found.

HTTP request header not found.

Check whether the required HTTP request header is contained.

400

IdentityCenter.1386

HTTP request header not found.

Invalid HTTP request header.

Check whether the HTTP request header is valid.

400

IdentityCenter.1387

MFA device {0} not found.

MFA device not found.

Check whether the parameter is correct.

400

IdentityCenter.1388

The maximum number of allowed MFA devices has been reached.

Failed to add MFA devices because the maximum number of MFA devices allowed for a user has been reached.

Check the MFA quota.

400

IdentityCenter.1389

Incorrect format of the X-Request-Proof request header.

Incorrect authentication header pattern.

Check whether the authentication header pattern is correct.

404

IdentityCenter.1390

HTTP request header {0} not found.

HTTP request header not found.

Check whether the HTTP request header exists.

400

IdentityCenter.1391

Invalid X-Request-Proof request header.

Incorrect request proof.

Check whether the request header parameter is correct.

400

IdentityCenter.1392

Failed to obtain the identity token.

Failed to obtain the STS credential.

Check whether the request parameter is correct.

403

IdentityCenter.1392

Failed to obtain the identity token.

Failed to obtain the STS credential.

Check whether you have sufficient permissions.

403

IdentityCenter.1393

The operation is not allowed because the account is frozen.

Account frozen. Operation not allowed.

Check whether the account is frozen.

403

IdentityCenter.1394

The operation is not allowed because the account is restricted.

Account restricted. Operation not allowed.

Check whether the account is restricted.

404

IdentityCenter.1398

Tenant not found.

Tenant not found.

Check whether the tenant exists.

400

IdentityCenter.1399

Failed to obtain the bearer token.

Failed to obtain the bearer token.

Check whether the parameter is correct.

400

IdentityCenter.1400

Bad Request: {0}.

Failed to create an access token.

Check whether the request parameter is correct.

500

IdentityCenter.1402

Bad Request: {0}.

Failed to create an access token.

Contact technical support.

400

IdentityCenter.1404

Access denied: {0}.

Access denied.

Check whether the request parameter is correct.

403

IdentityCenter.1404

Access denied: {0}.

Access denied.

Check whether you have permission to perform this operation.

400

IdentityCenter.1405

Bad Request: {0}.

Failed to verify the request parameter.

Check whether the request parameter is correct.

500

IdentityCenter.1405

Bad Request: {0}.

Failed to verify the request parameter.

Contact technical support.

404

IdentityCenter.1406

not found application.

Application not found.

Check whether the application exists.

400

IdentityCenter.1407

Failed to request the authorization of the account.

Profile not found.

Check whether the request parameter is correct.

400

IdentityCenter.1409

Invalid token.

Invalid ID token.

Check whether the ID token is valid.

401

IdentityCenter.1410

{0}.

Unauthorized.

Perform authorization as prompted.

401

IdentityCenter.1410

Failed to verify the session because the token is not found.

Failed to verify the session because the token is not found.

Check whether the session has expired.

400

IdentityCenter.1411

Client registration error.

An exception occurred when you register the client.

Check whether the request parameter is correct.

500

IdentityCenter.1411

Client registration error.

An exception occurred when you register the client.

Contact technical support.

500

IdentityCenter.1412

Algorithm not found: {0}.

Algorithm not found.

Check whether the algorithm is correct or contact technical support.

400

IdentityCenter.1413

Invalid session state: {0}.

Invalid session state identifier.

Check whether the session status identifier is correct.

400

IdentityCenter.1414

redis error.

Redis operation error.

Check whether the request parameter is correct.

400

IdentityCenter.1415

Failed to obtain the login token: {0}.

Failed to obtain the login token.

Check whether the request parameter is correct.

500

IdentityCenter.1415

Failed to obtain the login token: {0}.

Failed to obtain the login token.

Contact technical support.

500

IdentityCenter.1416

Internal server error: {0}.

Internal service error.

Contact technical support.

404

IdentityCenter.1417

Identity store ID not found.

Identity source ID not found.

Check whether the identity source ID exists.

400

IdentityCenter.1418

The workflow cannot be created.

Failed to create a workflow.

Check whether the parameter is correct.

400

IdentityCenter.1420

An error occurred when activating the device authorization code.

An error occurred when activating the device authorization code.

Check whether the request parameter is correct.

400

IdentityCenter.1420

An error occurred when canceling the device authorization code.

An error occurred when canceling the device authorization code.

Check whether the request parameter is correct.

403

IdentityCenter.1500

Invalid Token.

Invalid access token.

Check whether the access token is valid.

500

IdentityCenter.1501

Failed to obtain the identity token: {0}.

Failed to obtain the identity token.

Contact technical support.

500

IdentityCenter.1502

Failed to list accounts for the user: {0}.

Failed to obtain the account list.

Contact technical support.

500

IdentityCenter.1503

Failed to list agencies for the account: {0}.

Failed to list agencies or trust agencies for the account.

Contact technical support.

500

IdentityCenter.1504

Token verification failed: {0}.

Failed to verify the access token.

Contact technical support.

400

IdentityCenter.1505

Invalid Param: {0}.

Invalid request parameter.

Check whether the request parameter is correct.

500

IdentityCenter.1506

Algorithm not found.

Algorithm not found.

Check whether the algorithm is correct or contact technical support.

400

IdentityCenter.1507

Failed to obtain the service instance information: {0}.

Failed to obtain the service instance information.

Check whether the request parameter is correct.

500

IdentityCenter.1507

Failed to obtain the service instance information: {0}.

Failed to obtain the service instance information.

Contact technical support.

400

IdentityCenter.1508

Failed to delete the MFA device: {0}.

Failed to delete the MFA device for the user.

Check whether the parameter is correct.

500

IdentityCenter.1508

Failed to delete the MFA device: {0}.

Failed to delete the MFA device for the user.

Contact technical support.

400

IdentityCenter.1509

Failed to create the workflow: {0}.

Failed to create a workflow.

Check whether the parameter is correct.

500

IdentityCenter.1509

Failed to create the workflow: {0}.

Failed to create a workflow.

Contact technical support.

400

IdentityCenter.1511

Failed to obtain the MFA settings: {0}.

Failed to obtain the MFA management settings of the user.

Check whether the parameter is correct.

500

IdentityCenter.1511

Failed to obtain the MFA settings: {0}.

Failed to obtain the MFA management settings of the user.

Contact technical support.

400

IdentityCenter.1512

Failed to list MFA devices for the user: {0}.

Failed to list MFA devices for the user.

Check whether the parameter is correct.

500

IdentityCenter.1512

Failed to list MFA devices for the user: {0}.

Failed to list MFA devices for the user.

Contact technical support.

500

IdentityCenter.1513

Request processing failed due to an unknown error, exception, or fault on the internal server.

Request processing failed due to an unknown error, exception, or fault on the internal server.

Contact technical support.

400

IdentityCenter.1514

Failed to update the MFA device: {0}.

Failed to update MFA devices for the user.

Check whether the parameter is correct.

500

IdentityCenter.1514

Failed to update the MFA device: {0}.

Failed to update MFA devices for the user.

Contact technical support.

400

IdentityCenter.1515

Failed to obtain the permission set.

Failed to obtain the permission set.

Check whether the parameter is correct.

500

IdentityCenter.1515

Failed to obtain the permission set.

Failed to obtain the permission set.

Contact technical support.

400

IdentityCenter.1516

Email verification failed: {0}.

Email verification failed.

Check whether the parameter is correct.

500

IdentityCenter.1516

Email verification failed: {0}.

Email verification failed.

Contact technical support.

500

IdentityCenter.1517

failed to get the PKI token.

Failed to obtain the PKI token.

Contact technical support.

403

IdentityCenter.1518

read permission does not support MFA registration.

Read permissions do not support MFA binding.

Check whether permissions are sufficient.

403

IdentityCenter.1519

MFA disabled.

MFA disabled.

Enable MFA first.

400

IdentityCenter.1520

Invalid access token.

Invalid access token.

Check whether the access token is valid.

404

IdentityCenter.1600

Client not found.

Client not found.

Check whether the client ID is correct.

403

IdentityCenter.1601

Client expired.

The client has expired.

Check whether the client has expired. If yes, add the client again.

403

IdentityCenter.1602

Client secret expired.

The client secret key has expired.

Check whether the client secret key has expired. If yes, add the client again.

500

IdentityCenter.1603

Internal server error: {0}.

Internal service error.

Contact technical support.

401

IdentityCenter.1604

Invalid token.

Invalid access token.

Apply for a new access token and try again.

500

IdentityCenter.1605

Algorithm not found: {0}.

Algorithm not found.

Contact technical support.

400

IdentityCenter.1606

Invalid param: {0}.

Invalid request parameter.

Check whether the request parameter is correct.

403

IdentityCenter.1606

Invalid param: {0}.

Invalid request parameter.

Check whether the request parameter is correct.

404

IdentityCenter.1606

Invalid param: {0}.

Invalid request parameter.

Check whether the request parameter is correct.

400

IdentityCenter.1607

Failed to verify the JWT signature: {0}.

JWT token signature verification error.

Check whether the JWT token is correct.

400

IdentityCenter.1608

Authorization pending exception.

Authorization pending exception.

Try again later.

400

IdentityCenter.1609

The client does not support {0}.

Client not supported.

Check whether the request is correct.

500

IdentityCenter.1610

Internal server error.

Internal service error.

Contact technical support.

500

IdentityCenter.1611

Failed to obtain the access token.

Failed to obtain the access token.

Contact technical support.

401

IdentityCenter.1612

Invalid authorization type.

Invalid authorization type.

Check whether the authorization type is correct.

404

IdentityCenter.1613

Authorization rejected.

Authorization rejected.

Check whether the user agrees to the authorization.

400

IdentityCenter.1615

Requests of this type are not supported.

Request type not supported.

Check whether the request type is correct.

400

IdentityCenter.1616

The workflow is not supported.

Workflow not supported.

Check whether the workflow steps are correct.

400

IdentityCenter.1617

Failed to parse the ID token.

Failed to parse the ID token.

Check whether the ID token is valid.

400

IdentityCenter.1701

User verification exception.

User verification error.

Check whether the request parameter is correct.

500

IdentityCenter.1701

User verification exception.

User verification error.

Contact technical support.

400

IdentityCenter.1702

Login authentication error.

Login authentication error.

Check whether the authorization code is valid.

400

IdentityCenter.1703

Unsupported encoding.

Unsupported encoding.

Check whether the encoding of the request parameter is correct.

400

IdentityCenter.1704

approve code error.

Authorization code approval error.

Check whether the authorization code is valid.

423

IdentityCenter.1705

User locked.

User locked or disabled.

Unlock or enable the user.

424

IdentityCenter.1706

User expired.

The user password has expired.

Change the user password.

400

IdentityCenter.1707

Incorrect username, password, or identity store id.

Incorrect username, password, or identity source identifier.

Check whether the username, password, or identity source identifier is correct.

400

IdentityCenter.1708

An error occurred when obtaining the external IdP.

Failed to obtain the identity provider information.

Check whether the request parameter is correct.

400

IdentityCenter.1709

An error occurred when constructing the SAML request or response.

An error occurred when constructing the SAML request or response.

Check whether the request parameter is correct.

400

IdentityCenter.1710

No supported methods.

Unsupported method.

Check whether the request parameter is correct.

400

IdentityCenter.1711

An error occurred when obtaining SAML metadata.

Failed to obtain the SAML metadata.

Check whether the request parameter is correct.

400

IdentityCenter.1712

The signature certificate cannot be decoded.

Failed to verify the signature certificate.

Check whether the certificate signature is successful.

400

IdentityCenter.1714

Incorrect SAML response.

SAML response error.

Check whether the SAML response is correct.

500

IdentityCenter.1716

Algorithm not found: {0}.

Algorithm not found.

Contact technical support.

400

IdentityCenter.1717

Session expired.

Session expired.

Check whether the session is valid.

400

IdentityCenter.1718

Failed to reset the password.

Failed to reset the password.

Check whether the request parameter is valid.

400

IdentityCenter.1719

Username verification failed.

Username verification error.

Check whether the request parameter is correct.

400

IdentityCenter.1721

Session timed out or stopped working. Restart your workflow.

Session timed out or stopped working. Restart your workflow.

Restart your workflow.

400

IdentityCenter.1722

Request cannot be completed. Try again later.

Request cannot be completed. Try again later.

Try again later.

400

IdentityCenter.1724

Failed to process the workflow. Try again later.

Failed to process the workflow. Try again later.

Try again later.

400

IdentityCenter.1725

This operation cannot be performed.

This operation cannot be performed.

Check whether the request parameter is correct.

400

IdentityCenter.1726

Failed to verify the MFA code.

Failed to verify the MFA code.

Check whether the request parameter is valid.

400

IdentityCenter.1727

Failed to create an MFA device: {0}

Failed to create an MFA device.

Check whether the request parameter is correct.

400

IdentityCenter.1728

Failed to update the MFA device: {0}

Failed to update the MFA device.

Check whether the request parameter is correct.

400

IdentityCenter.1728

Failed to find the MFA device: {0}

Failed to find the MFA device.

Ensure that the device exists.

400

IdentityCenter.1729

Devices of this type cannot be registered again.

Devices of this type cannot be registered again.

Check whether the number of registered MFA devices has reached the upper limit.

400

IdentityCenter.1730

Failed to obtain the service instance information.

Failed to obtain the service instance information.

Check whether the request parameter is correct.

400

IdentityCenter.1731

Invalid session state.

Invalid session state.

Check whether the session has expired.

400

IdentityCenter.1734

User search failed.

Failed to retrieve users.

Check whether the request parameter is correct.

400

IdentityCenter.1735

Incorrect username, password, verification code, or identity store id.

Incorrect username, password, verification code, or identity source ID.

Check whether the username, password, verification code, or identity source ID is correct.

400

IdentityCenter.1736

Workflow creation failed. Try again later.

Workflow creation failed. Try again later.

Try again later.

400

IdentityCenter.1737

Incorrect username, password, verification code, or identity store id.

Incorrect username, password, verification code, or identity source ID.

Check whether the username, password, verification code, or identity source ID is correct.

500

IdentityCenter.1738

Failed to obtain the verification code.

Failed to obtain the verification code.

Contact technical support.

403

IdentityCenter.1739

Login failed. Contact the administrator to add an MFA device.

Login failed. Contact the administrator to add an MFA device.

Contact the administrator to add an MFA device.

400

IdentityCenter.1740

Invalid {0}

Invalid parameter.

Check whether the request parameter is valid.

400

IdentityCenter.1741

Invalid one-time password.

Invalid one-time password.

Check whether the one-time password is valid.

500

IdentityCenter.1750

Algorithm not found: {0}

Algorithm not found.

Contact technical support.

400

IdentityCenter.1751

Failed to update the email status: {0}

Failed to update the email status.

Check whether the request parameter is correct.

Table 1 SCIM error codes

HTTP Status Code

Response Status Code

Error Message

Description

Solution

400

400

Bad Request: {0}

Unsupported encoding.

Check whether the encoding of the request parameter is correct.

404

404

User [{0}] not found.

User not found.

Check whether the user exists.

404

404

Group [{0}] not found.

Group not found.

Check whether the group exists.

404

404

Group member not found.

Member not found.

Check whether the user exists and is added to the group.

409

409

User [{0}] or email address already exists.

User already exists.

Check whether the user already exists.

409

409

Group [{0}] already exists.

Group already exists.

Check whether the group already exists.

500

500

There was an internal server error.

Internal service error.

Contact technical support.