NullPointerException in WssSaml11TokenProcessor.authenticateSamlToken

(Doc ID 2075665.1)

Last updated on OCTOBER 25, 2016

Applies to:

Oracle Web Services Manager - Version 11.1.1.9.0 to 12.1.3.0.0 [Release 11g to 12c]
Information in this document applies to any platform.

Symptoms

Oracle Web Service Manager (OWSM) 12.1.3 or 11.1.1.9.

Policy oracle/wss_saml_token_bearer_over_ssl_service_policy fails with a NullPointerException, like this:


[2015-11-06T14:27:51.431+02:00] [soa_server1] [ERROR] [WSM-07501] [oracle.wsm.resources.enforcement] [tid: [ACTIVE].ExecuteThread: '8' for queue: 'weblogic.kernel.Default (self-tuning)'] [userId: ] [ecid: a259d984-d6c4-4d16-93c2-e90fc22e0f7f-00000020,0] [APP: cibws_ear-1.35.03-SNAPSHOT#1.35.03-SNAPSHOT] [WEBSERVICE.name: CIBSvc] [WEBSERVICE_PORT.name: CIBSvcPort] [oracle.wsm.policy.name: oracle/wss_saml_token_bearer_over_ssl_service_policy] Failure in Oracle WSM Agent processRequest, category=security, function=agent.function.service, application=cibws_ear-1.35.03-SNAPSHOT, composite=null, modelObj=CIBSvc, policy=oracle/wss_saml_token_bearer_over_ssl_service_policy, policyVersion=null, assertionName={http://schemas.oracle.com/ws/2006/01/securitypolicy}wss-saml-token-bearer-over-ssl.[[
[...]
Caused by: java.lang.NullPointerException
at oracle.wsm.security.policy.scenario.processor.WssSaml11TokenProcessor.authenticateSamlToken(WssSaml11TokenProcessor.java:281)
at oracle.wsm.security.policy.scenario.processor.WssSaml11TokenProcessor.authenticate(WssSaml11TokenProcessor.java:238)
at oracle.wsm.security.policy.scenario.processor.WssSamlTokenProcessor.verify(WssSamlTokenProcessor.java:695)
at oracle.wsm.security.policy.scenario.executor.WssSamlTokenBearerOverSSLScenarioExecutor.receiveRequest(WssSamlTokenBearerOverSSLScenarioExecutor.java:165)
at oracle.wsm.security.policy.scenario.executor.SecurityScenarioExecutor.execute(SecurityScenarioExecutor.java:642)
at oracle.wsm.policyengine.impl.runtime.AssertionExecutor.execute(AssertionExecutor.java:44)
at oracle.wsm.policyengine.impl.runtime.WSPolicyRuntimeExecutor.executeSimpleAssertion(WSPolicyRuntimeExecutor.java:515)
... 52 more

 

Cause

Sign In with your My Oracle Support account

Don't have a My Oracle Support account? Click to get started

My Oracle Support provides customers with access to over a
Million Knowledge Articles and hundreds of Community platforms