WLS12 JACC & JASPIC: Authentication Result Not Correctly Set

(Doc ID 1965347.1)

Last updated on DECEMBER 11, 2017

Applies to:

Oracle WebLogic Server - Version and later
Information in this document applies to any platform.


Subject and principals are not set although a JASPIC SAM establishes the caller indentiy.

The JACC PolicyContextHandler does not return the correct subject for the key “javax.security.auth.Subject.container” in Servlet and EJB environment if the resource is only authentication protected.
Morover, the CDI injected principal of the authenticated user is not set correctly in EJBs.


Sign In with your My Oracle Support account

Don't have a My Oracle Support account? Click to get started

My Oracle Support provides customers with access to over a
Million Knowledge Articles and hundreds of Community platforms