Fusion Middleware Control handling of System Policies Throws errors LIBOVD-60024 and IGF-00008 - "LDAP Error 2 : simple bind failed" (Doc ID 1963104.1)

Last updated on JULY 29, 2017

Applies to:

Enterprise Manager for Fusion Middleware - Version 11.1.1.4.0 to 11.1.1.9.0
Oracle Fusion Middleware - Version 11.1.1.4.0 to 11.1.1.9.0 [Release Oracle11g]
Information in this document applies to any platform.

Symptoms

Fusion Middleware installation for versions 11g and 12c. After enabling domain wide administration port, it is impossible to search for users or groups in the "Create System Grant" in EM console. At the specific moment of searching for a Grantee in the security handling pages, the AdminServer produces a "LDAP Error 2 : simple bind failed" error:

If "Enable Administration Port" is turned off in domain settings of WLS console, I can search for users and groups to add system grants in Fusion Middleware Control without any problem.

Changes

The issue can be reproduced at will with the following steps:

1 - In WLS console go to domain settings and Enable Administration Port
2 - Go to Fusion Middleware Control ("/em")
3 - Expand node "WebLogic Domain"
4 - Right click on the name of your domain. In the pop-up window, go to "Security" -> "System Policies"
5 - In the "System Policies" window, press "Create ..." to create a new system security grant
6 - In the "Create System Grant" window change the list box to "Grant to -> Principal"
7 - In the new window press the "+Add" button to add a Grantee
8 - In the resulting pop-up window press the "Search roles" button (the little round button with a right triangle)
9 - The pop-up window remains empty and the logfile shows the reported error 

Cause

Sign In with your My Oracle Support account

Don't have a My Oracle Support account? Click to get started

My Oracle Support provides customers with access to over a
Million Knowledge Articles and hundreds of Community platforms