OBIEE 22.214.171.124.x: With Default Authenticator Set to Required, Users With Invalid Credentials (Incorrect User Name or Password) Are Still Able to Login to OBIEE Application
Last updated on MARCH 23, 2017
Applies to:Business Intelligence Server Enterprise Edition - Version 126.96.36.199.0 and later
Business Intelligence Answers Option - Version 188.8.131.52.0 and later
Business Intelligence Suite Enterprise Edition - Version 184.108.40.206.0 and later
Information in this document applies to any platform.
Currently have single security realm set up in OBIEE , with default authenticator set to REQUIRED.
There are approximately 300 users set up in Weblogic with login access to OBI application (using the default authenticator).
However, it seems this is not working correctly, as users with invalid credentials (incorrect user name or password) are still able to login to OBIEE application, on http://:9704/analytics or http://:7777/analytics.
Also after login their OBI roles/privileges are not being loaded and cannot actually use the application correctly to view or run any reports.
While trying to access the Weblogic console with invalid admin user id / password,it is returning Authentication Denied message which is as expected.
Sign In with your My Oracle Support account
Don't have a My Oracle Support account? Click to get started
My Oracle Support provides customers with access to over a
Million Knowledge Articles and hundreds of Community platforms