Oracle Access Manager (OAM 11g) Intermittent Looping Issue, Logs Show…EXCEPTION WHILE DECRYPTING TOKEN

(Doc ID 1515212.1)

Last updated on MARCH 08, 2017

Applies to:

Oracle Access Manager - Version and later
Information in this document applies to any platform.


Two OAM Managed servers running in a WLS cluster. 

Seeing intermittent looping issue (mostly during loadrunner baseline test), the OAM SSO Login page appears correctly, user submits the credentials and OAM sets to obSSO cookie and calls accessgate application to establish e-business session.
The looping happens at this stage, the accessgate application could not create the eBS session and returns to OAM for reauthentication.
OAM responds that user is already authenticated and the loop keep on going.

When Looping happens, here is the flow after user pass the credentials

Note: OAM tries to authenticate but return the response to AccessGate load balanced application that user is already authenticated... http://hostname.domain:port/ebsauth_cplnft02/ssologin

Note: AccessGate load balanced application is unable to create a jSession cookie for this user and the loop continues...http://hostname.domain:port/oam/server/obrareq.cgi?"

When there is no looping, the re-direction steps look like below..

Note: Load Balanced Accessgate application able to establish jsession for eBS and user sees the eBS Homepage.


Sign In with your My Oracle Support account

Don't have a My Oracle Support account? Click to get started

My Oracle Support provides customers with access to over a
Million Knowledge Articles and hundreds of Community platforms