Error: ETA_E_0016 decrypting attribute eTEncryptedPassword during account provisioning
search cancel

Error: ETA_E_0016 decrypting attribute eTEncryptedPassword during account provisioning

book

Article ID: 451530

calendar_today

Updated On:

Products

CA Identity Suite CA Identity Manager

Issue/Introduction

Account provisioning fails with error ETA_E_0016 (Error decrypting attribute eTEncryptedPassword). This error occurs when attempting to provision accounts to specific endpoints.

Environment

Identity Manager (all supported versions).

Cause

The eTEncryptedPassword attribute for the service account utilizes encryption keys from a previous installation or environment version. Mismatched security keys prevent successful decryption during provisioning operations.

Resolution

Check the eTPasswordUpdateDate on the suspected accounts.

How to read the CYYDDD  value in eTPasswordUpdateDate attribute is provided in this article https://knowledge.broadcom.com/external/article/246416

Re-enter account password from IM GUI, Directory or from IMPM to force re-encryption of the eTEncryptedPassword attribute using current environment security keys.