SAP Knowledge Base Article - Preview

2627508 - "Illegal key size" error with OTP logon module

Symptom

You have recently performed an upgrade to your NetWeaver JAVA Stack and after this upgrade your OTP Logon is no longer working as required and you are receiving the below error:

Timestamp#+0100#Error#com.sap.security.sso.authlib.otp.authenticator#
#BC-IAM-SSO-OTP#sap.com/sso~otp~ear#Log-ID#sap.com/sso~otp~ear#com.sap.security.sso.authlib.otp.authenticator
Unable to generate response
[EXCEPTION]
java.security.InvalidKeyException: Illegal key size
        at javax.crypto.Cipher.checkCryptoPerm(Cipher.java:###)
        at javax.crypto.Cipher.implInit(Cipher.java:###)
        at javax.crypto.Cipher.chooseProvider(Cipher.java:###)
        at javax.crypto.Cipher.init(Cipher.java:###)
        at javax.crypto.Cipher.init(Cipher.java:###)
        at com.sap.security.sso.otp.authenticator.lib.objects.EncryptedOTPKey.<init>(EncryptedOTPKey.java:##)
        at com.sap.security.sso.otp.authenticator.impl.rest.SetupServlet.process(SetupServlet.java:##)
        at com.sap.security.sso.otp.authenticator.impl.rest.SetupServlet.doPost(SetupServlet.java:##'')


Read more...

Environment

  • Release Independent
  • SAP NetWeaver Java

Product

SAP NetWeaver all versions

Keywords

OTP, One Time Password, One-time Password, Illegal Key Size, Illegal Key-Size, JCE, Unlimited Policy Files, com.sap.security.sso.authlib.otp.authenticator, BC-IAM-SSO-OTP, Unable to generate response. , KBA , BC-IAM-SSO-OTP , One-Time Passwords and Access Policies , BC-JAS-SEC-AUT , ACLs, J2EE Roles, UME Actions , Problem

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.