Oracle Access Manager (OAM 11g) Intermittent Looping Issue, Logs Show…EXCEPTION WHILE DECRYPTING TOKEN
Last updated on MARCH 08, 2017
Applies to:Oracle Access Manager - Version 220.127.116.11.0 and later
Information in this document applies to any platform.
Two OAM Managed servers running in a WLS cluster.
Seeing intermittent looping issue (mostly during loadrunner baseline test), the OAM SSO Login page appears correctly, user submits the credentials and OAM sets to obSSO cookie and calls accessgate application to establish e-business session.
The looping happens at this stage, the accessgate application could not create the eBS session and returns to OAM for reauthentication.
OAM responds that user is already authenticated and the loop keep on going.
When Looping happens, here is the flow after user pass the credentials
Note: OAM tries to authenticate but return the response to AccessGate load balanced application that user is already authenticated... http://hostname.domain:port/ebsauth_cplnft02/ssologin
Note: AccessGate load balanced application is unable to create a jSession cookie for this user and the loop continues...http://hostname.domain:port/oam/server/obrareq.cgi?wh%3Dcplnft02_HostId%20wu%3D%2Febsauth_cplnft02%2Fssologin%20wo%3D1%20rh%3Dhttp%3A%2F%2Fjlp-partnerlinklogin-cplnft01.johnlewis.co.uk%20ru%3D%252Febsauth_cplnft02%252Fssologin"
When there is no looping, the re-direction steps look like below..
Note: Load Balanced Accessgate application able to establish jsession for eBS and user sees the eBS Homepage.
Sign In with your My Oracle Support account
Don't have a My Oracle Support account? Click to get started
Million Knowledge Articles and hundreds of Community platforms