Monday, 16 May 2016

blogger

[WebLogic Server 12.2.1.0.0]Not able to Log in into the service bus using the User from Active Directory


Hello Viewer,

I have configured the Active Directory with the OSB Domain , I was able to Log in into the Administration Console and Em using the User Present in the Active directory . But when i was trying to Log in into the Service Bus i was getting the Below 


Error : [2016-05-11T21:59:32.400-07:00] [AdminServer] [ERROR] [ADFC-50017] [oracle.adfinternal.controller.application.AdfcExceptionHandler] [tid: [ACTIVE].ExecuteThread: '4' for queue: 'weblogic.kernel.Default (self-tuning)'] [userId: peshadab] [ecid: 6e20bceb-cc66-4090-a6c7-a87d1b4673ea-00001c2d,0] [APP: service-bus] [partition-name: DOMAIN] [tenant-name: GLOBAL] [DSID: 0000LIZKqMDCwktDwf3FCW1NCTgV00000C] ADFc: While attempting to handle this exception the application's exception handler failed.[[ oracle.adf.controller.security.AuthorizationException: ADFC-0619: Authorization check failed: User 'username' does not have 'VIEW' permission on 'jsf.resourcesPageDef'. at oracle.adf.controller.internal.security.AuthorizationEnforcer.handleFailure(AuthorizationEnforcer.java:203) at oracle.adf.controller.internal.security.AuthorizationEnforcer.internalCheckPermission(AuthorizationEnforcer.java:170) at oracle.adf.controller.internal.security.AuthorizationEnforcer.checkPermission(AuthorizationEnforcer.java:119) at oracle.adfinternal.controller.state.ControllerState.checkPermission(ControllerState.java:920) at oracle.adfinternal.controller.state.ControllerState.synchronizeStatePart2(ControllerState.java:730) at oracle.adfinternal.controller.application.SyncNavigationStateListener.afterPhase(SyncNavigationStateListener.java:85) at oracle.adfinternal.controller.lifecycle.ADFLifecycleImpl$PagePhaseListenerWrapper.afterPhase(ADFLifecycleImpl.java:539) at oracle.adfinternal.controller.lifecycle.LifecycleImpl.internalDispatchAfterEvent(LifecycleImpl.java:124) at oracle.adfinternal.controller.lifecycle.LifecycleImpl.dispatchAfterPagePhaseEvent(Lif 
For the same kind of error few metalink note states that its a wrong JDK version issue. but since i am using wls 12.2.1.0.0 version for which according to cert matrix jdk 1.8 is certified version for my weblogic version.


Metalink note: OSB 12c - Weblogic Admin User Unable to Login to 12c Service Bus Console With Error 401--Unauthorized (Doc ID 1939789.1) 


Workaround :


Log on to EM -> Right Click domain_name -> Security -> Application Policies 
Search with the following options : Application Stripe : Service_Bus_Console Principal Type : Group Principal Name : Starts With : IntegrationAdministrators This will return 2 results , select the first one and choose "Create Like" 
In Grantee -> Click on Add -> Search Type : User 
Principal Name : Starts With : <username in ADSelect Ok Confirm the Information : A new security grant has been added successfully. Make sure that user belongs to "IntegrationAdmin" Role in WLS console Log on to sbconsole and this time you should be able to login with user in AD.


Thanks a lot for your patience!!!

Regards
-Ashish

No comments:

Post a Comment