After Some Time Synchronized Users Cannot Login to Oracle SSO. Error: Authentication Failed. (Doc ID 1061268.1)

Last updated on MARCH 08, 2017

Applies to:

Oracle Application Server Single Sign-On - Version 10.1.4 and later
Information in this document applies to any platform.
***Checked for relevance on 02-NOV-2015***

Symptoms


After Oracle Internet Directory (OID) is started, users synchronized to OID from Active Directory suddenly cannot authenticate to OIDDAS or any Oracle Single Sign-On (SSO) protected site.


Error: Authentication Failed.

The problem is resolved by restarting OID, but if the system is left idle for 30 - 60 minutes the problem starts occurring again.
Tests of ldapbind as a synchronized user from the OID server commandline when SSO login is showing 'authentication failed' also produce an error:
ldapbind -p OIDPORT -D "cn=aduser1,cn=users,dc=oracle,dc=com" -w passw0rd 
ldap_bind: Can't contact LDAP server
ldapbind as non-synchronized users is successful. The problem is specific to users that are authenticated using the OID External Authentication plug-ins for Active Directory.

Cause

Sign In with your My Oracle Support account

Don't have a My Oracle Support account? Click to get started

My Oracle Support provides customers with access to over a
Million Knowledge Articles and hundreds of Community platforms