OAM-OAAM Integration Breaks After Submitting Credentials

(Doc ID 2129697.1)

Last updated on AUGUST 25, 2017

Applies to:

Oracle Adaptive Access Manager - Version 11.1.2.3.0 and later
Information in this document applies to any platform.

Symptoms

You have upgraded OAM and OAAM from 11gR2PS2 BP07 to OAM 11gR2PS3 BP06 using steps similar to these:

  1. Set same password value for IAMSuiteAgent in Weblogic console provider and oamconsole agent.
  2. Register TAPPartner using the below command in WLST after connecting to OAM Admin server: registerThirdPartyTAPPartner(partnerName="OAAMTAPPartner", keystoreLocation="/apps/oam/middleware/Oracle_IDM/TAP/TapKeyStore/mykeystore.jks", password="<PASSWORD>", tapTokenVersion="v2.0", tapScheme="TAPScheme", tapRedirectUrl="https://signon.cusotmer.org:443/oaam_server/oamLoginPage.jsp")
  3. Copy the mykeystore.jks to OAAM Host.
  4. Edit the oaam_cli.properties with the required details.
  5. Run setupTap as follows: ./setupOAMTapIntegration.sh conf/bharosa_properties/oaam_cli.properties
  6. Ensure the TAPScheme in OAM coonsole contains these challenge parameters: TAPPartnerId=OAAMTAPPartner, SERVER_HOST_ALIAS=OAMSERVER, MatchLDAPAttribute=uid, ssoCookie=disablehttponly
  7. Access a TAPScheme protected resource --> OAAM login pages comes up.
  8. Provide valid username\password and the browser gives throws an error.

OAM starts printing the errors shown below at this point:

<Apr 10, 2016 9:34:29 PM PDT> <Error> <NAPLogger> <BEA-000000> <Mismatch should_be: 2eb79a40047b3584d2eb85cfcf9a80d7 Mismatch response: 98e885ca846fc434bdf02c2aeba26a4b>
<Apr 10, 2016 9:34:29 PM PDT> <Error> <NAPLogger> <BEA-000000> <Mismatch should_be: 4dcb753e84d93a627817755acd2ad76e Mismatch response: 98a000fdf574255e4623430782af3220>

OAAM starts printing the errors shown below at this point:

<Apr 10, 2016 9:27:52 PM PDT> <Error> <Default> <BEA-000000> <Error in receiving hashed server challenge>
<Apr 10, 2016 9:27:52 PM PDT> <Error> <Default> <BEA-000000> <Error in receiving hashed server challenge>





Changes

 

Cause

Sign In with your My Oracle Support account

Don't have a My Oracle Support account? Click to get started

My Oracle Support provides customers with access to over a
Million Knowledge Articles and hundreds of Community platforms