When attempting to decrypt passwords or manage JDBC managed objects in CA Identity Manager, the system may fail with an InvalidCipherTextException. This error typically indicates a mismatch or corruption regarding the FIPS key used for encryption/decryption operations.
Symptoms The following error is observed in the logs:
Additional log context may show the key path: The key path =/com/netegrity/config/keys/FIPSkey.dat
Identity Manager 14.x
his issue is caused by an incorrect or mismatched FIPS key (FIPSkey.dat) being used to decrypt entries in the password table.
If there is no Provisioning Server involved in your environment, perform the following steps:
Note: If a Provisioning Server is involved, ensure that the FIPS key on the Identity Manager server matches the key used by the Provisioning Server.