My Oracle Support Banner

Browser Goes Into an Infinite Loop Accessing A Mod_osso Protected Application (Doc ID 1084794.1)

Last updated on AUGUST 21, 2020

Applies to:

Oracle HTTP Server - Version 10.1.2.0.2 to 10.1.4 [Release AS10gR2]
Information in this document applies to any platform.

Symptoms

POST /sso/auth HTTP/1.1
Host: sso.domain
etc..
Referer: https://sso.domain/sso/login.jsp?site2pstoretoken=<token>&p_error_code=&p_submit_url=https%3A%2F%2Fsso.domain%2Fsso%2Fauth&p_cancel_url=https%3A%2F%2Fmidtier.domain&ssousername=&subscribername=
Content-Type: application/x-www-form-urlencoded
Content-Length: xxx
p_action=OK&v=v1.4&site2pstoretoken=<token>&appctx=&p_cancel_url=https%3A%2F%2Fmidtier.domain&locale=&ssousername=xxxxxx&password=xxxxx&button=Login

HTTP/1.1 302 Moved Temporarily
Date: <date time>
Server: Oracle-Application-Server-10g
Content-Length: xxx
Set-Cookie: <cookie>
Set-Cookie: <cookie>
Set-Cookie: <cookie>
Cache-Control: private
Location: https://midtier.domain/sso_login_success?urlc=<token>
Keep-Alive: timeout=15, max=98
Connection: Keep-Alive
Content-Type: text/html; charset=UTF-8
----------------------------------------------------------
https://midtier.domain/osso_login_success?urlc=<token>

GET /osso_login_success?urlc=<token> HTTP/1.1
Host: midtier.domain
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 5.1; en-GB; rv:1.9.2.3) xxxxx Firefox/3.6.3
Accept: text/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8
Accept-Language: en-gb,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: xxx
Connection: keep-alive
Referer: https://sso.domain/sso/login.jsp?site2pstoretoken=<token>&p_error_code=&p_submit_url=https%3A%2F%2Fmysso%2Fsso%2Fauth&p_cancel_url=https%3A%2F%2Fmidtier.domain&ssousername=&subscribername=
Cookie: <cookie>

HTTP/1.1 302 Found
Location: https://midtier.domain/private/file-backup-README.txt
Content-Type: text/html; charset=iso-8859-1
Set-Cookie: <cookie>
Connection: Keep-Alive
Keep-Alive: timeout=5, max=999
Server: Oracle-Application-Server-10g OracleAS-Web-Cache-10g/10.1.2.3.1 (N;ecid=<ecid>)
Content-Length: xxx
Date: <date time>
----------------------------------------------------------
https://midtier.domain/private/file-backup-README.txt

GET /private/file-backup-README.txt HTTP/1.1
Host: midtier.domain
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 5.1; en-GB; rv:1.9.2.3) xxxxx Firefox/3.6.3
Accept: text/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8
Accept-Language: en-gb,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: xxx
Connection: keep-alive
Referer: https://sso.domain/sso/login.jsp?site2pstoretoken=<token>&p_error_code=&p_submit_url=https%3A%2F%2Fsso.domain%2Fsso%2Fauth&p_cancel_url=https%3A%2F%2Fmidtier.domain&ssousername=&subscribername=
Cookie: <cookie>
HTTP/1.1 302 Redirect to Oracle SSO Server
Location: https://sso.domain/pls/orasso/orasso.wwsso_app_admin.ls_login?Site2pstoreToken=<token>
Content-Type: text/html; charset=iso-8859-1
Connection: Keep-Alive
Keep-Alive: timeout=5, max=999
Server: Oracle-Application-Server-10g OracleAS-Web-Cache-10g/10.1.2.3.1 (N;ecid=<ecid>)
Content-Length: xxx
Date: <date time>
[debug] mod_osso.c(2885): [client: <ip>] [ecid: <ecid>] \n[OSSO] Dxx: authenticate_user()\n
[debug] mod_osso.c(510):  [client: <ip>] [ecid: <ecid>] \n[OSSO] Dxx: process_idle_time()\n
[debug] mod_osso.c(844):  [client: <ip>] [ecid: <ecid>] \n[OSSO] Dxx: unpack_cookie()\n
[debug] mod_osso.c(1983): [client: <ip>] [ecid: <ecid>] \n[OSSO] Dxx: decrypt_cookie()\n
[debug] mod_osso.c(1233): [client: <ip>] [ecid: <ecid>] \n[OSSO] Dxx: make_query_string()\n
[debug] mod_osso.c(1873): [client: <ip>] [ecid: <ecid>] \n[OSSO] Dxx: Time sent: xxxxxxxx, gmtime: xx, time returned: <date time>
[debug] mod_osso.c(1907): [client: <ip>] [ecid: <ecid>] \n[OSSO] Dxx: Timestamp string: <date time>
[debug] mod_osso.c(1155): [client: <ip>] [ecid: <ecid>] \n[OSSO] Dxx: des_encrypt()\n

Cause

To view full details, sign in with your My Oracle Support account.

Don't have a My Oracle Support account? Click to get started!


In this Document
Symptoms
Cause
Solution


My Oracle Support provides customers with access to over a million knowledge articles and a vibrant support community of peers and Oracle experts.