When Using a Credential Map, Accounts Still Get Added To Search Query For Users With Admin Role. (Doc ID 2244811.1)

Last updated on MARCH 17, 2017

Applies to:

Oracle WebCenter Content - Version 11.1.1.6.0 and later
Information in this document applies to any platform.

Symptoms

WebCenter Content is configured for credential mapping.

In the credential map, an LDAP group is mapped to the admin and sysmanager roles.

As an example:

WLSAdmins, admin
WLSAdmins, sysmanager
|#all|, %%
@|#all|, @%%

A user is a member of that group and addition several other groups used as WCC accounts.

After logging into the WCC, the user's profile will look something like this:

User Name: tom
Roles: Administrators, admin, refineryadmin, rmaadmin, pcmadmin, ermadmin, sysmanager, guest, authenticated
Accounts: #none, account1

When that user does a search, even though the dDocAccount entries are added in the search query.

As an example:

>searchquery/6 03.16 10:41:18.883 IdcServer-88 query(live): ((((TEST) WITHIN dDocTitle))) and (((((account1%) WITHIN dDocAccount)) or (((idcnull) WITHIN dDocAccount)))) [1,20] sort(dInDate Desc)

Typically when a user with the Admin role does a search, the accounts aren't added to the query:

>searchquery/6 03.16 10:50:46.892 IdcServer-19 query(live): (((TEST) WITHIN dDocTitle)) [1,20] sort(dInDate Desc)

 

Cause

Sign In with your My Oracle Support account

Don't have a My Oracle Support account? Click to get started

My Oracle Support provides customers with access to over a
Million Knowledge Articles and hundreds of Community platforms