Oracle Access Manager 11gr2ps3 (OAM 11.1.2.3.x) Throwing Intermittent Error On Login, Where Login Screen Will Come Again and Again (Looping) (Doc ID 2263267.1)

Last updated on MAY 12, 2017

Applies to:

Oracle Access Manager - Version 11.1.2.2.0 and later
Information in this document applies to any platform.

Symptoms

[2017-03-28T15:52:20.972-05:00] [wls_oam1] [NOTIFICATION:16] [OAM-04008] [oracle.oam.proxy.oam] [tid: [ACTIVE].ExecuteThread: '33' for queue: 'weblogic.kernel.Default (self-tuning)'] [userId: <anonymous>] [ecid: a16a80739e761861:6e7f8c7e:15b0fe0b351:-8000-0000000000045a17,0] [APP: oam_server#11.1.2.0.0] Message sent to client. Message OpCode = 40 [DCCAuthenticate], SeqNo = 6 Message = cx=A4B7D74189D4284FCCD4CA22B357CC483C99145937949EFDAC2A63C83132BD558C4A0950A01277A466153195F1238D7C339AFF18E6C0B0B862888E23E3F1959EF2E895D9A7EE3DE0D6053903B41C1DCF9B14B2AA693309FE917BB949B9059589FC0A9CF29DFFBA3E14138430B54F6A9BB267CC44E08B6EE148AAC2BA04C217C7 cr=token fl=MAINTAIN_AFFINITY%3dfalse at=3 ru=https://ohs-xij11l-dcc.company.com:15195/ies/app/processChallenge.do ad=PLUGIN_CLIENT_RESPONSE%3diesUserDN%253d20dc1be6c6979c0baad6350400904ef3042133478a3c45fc st=ma%3d96%20mi%3d47%20sg%3d6129900%20dm%3d%20sm%3d pa= rt=0, Host : 10.34.217.101 Port : 47816.

[2017-03-28T15:52:24.625-05:00] [wls_oam1] [TRACE:16] [] [oracle.oam.config] [tid: OAM - SME Expired Session Reaper (JDBC)] [userId: <anonymous>] [ecid: 0000LgFsDuw3z0uLsa8DyX1OqGu3000005,0] [APP: oam_server#11.1.2.0.0] [SRC_CLASS: oracle.security.am.admin.config.util.GenericFactory] [SRC_METHOD: getInstance] ENTRY Util
[2017-03-28T15:52:24.625-05:00] [wls_oam1] [TRACE:16] [] [oracle.oam.config] [tid: OAM - SME Expired Session Reaper (JDBC)] [userId: <anonymous>] [ecid: 0000LgFsDuw3z0uLsa8DyX1OqGu3000005,0] [APP: oam_server#11.1.2.0.0] [SRC_CLASS: oracle.security.am.admin.config.util.MapUtil] [SRC_METHOD: getClassValue] found object:oracle.security.am.foundation.mapimpl.coherence.util.Utilclass oracle.security.am.admin.config.model.ClassObjectoracle.security.am.foundation.mapimpl.coherence.util.Util
[2017-03-28T15:52:24.625-05:00] [wls_oam1] [TRACE:16] [] [oracle.oam.config] [tid: OAM - SME Expired Session Reaper (JDBC)] [userId: <anonymous>] [ecid: 0000LgFsDuw3z0uLsa8DyX1OqGu3000005,0] [APP: oam_server#11.1.2.0.0] [SRC_CLASS: oracle.security.am.admin.config.util.MapUtil] [SRC_METHOD: getClassValue] object oracle.security.am.foundation.mapimpl.coherence.util.Util loading value of type:class oracle.security.am.admin.config.model.ClassObject
[2017-03-28T15:52:24.625-05:00] [wls_oam1] [TRACE:16] [] [oracle.oam.config] [tid: OAM - SME Expired Session Reaper (JDBC)] [userId: <anonymous>] [ecid: 0000LgFsDuw3z0uLsa8DyX1OqGu3000005,0] [APP: oam_server#11.1.2.0.0] [SRC_CLASS: oracle.security.am.admin.config.util.ChildFirstURLClassLoader] [SRC_METHOD: loadClass] Returning cached result:oracle.security.am.foundation.mapimpl.coherence.util.Util

In http header trace we see:

GET /obrareq.cgi?encquery%3DQ2mq3Er6rL7XznH1u1SJWHx0TYsra0Or4bah0Cp6%2BUiIjYdAEe..text omitted..O8%2BIEwDWmAz8j615I%3D%20agentid%3Da1_ohs_iam119_wls10_1%20ver%3D1%20c rmethod%3D2 HTTP/1.1
..
HTTP/1.1 302 Found
Set-Cookie: DCCCtxCookie_ohs-iam119-dcc2.company.com:15196=encdata%3DkCziFbBcfIMdO..text omitted..GTbr2JAQ1DwDV90V1%2Fss%3D; httponly; secure; path=/oam/server/auth_cred_submit
Set-Cookie: BIGipServerohs-iam119-dcc2.wpc=1842946570.23611.0000; path=/
....text omitted ...

POST /oam/server/auth_cred_submit HTTP/1.1
..
HTTP/1.1 200 OK
Set-Cookie: DCCCtxCookie_ohs-iam119-dcc2.company.com:15196_1=encdata%3Dl2T0i%2BoCmo42i%2BV6auil..text omited..5629EEE3C6AB842751F3CA9727; httponly; secure; path=/oam/server/auth_cred_submit
Set-Cookie: DCCCtxCookie_ohs-iam119-dcc2.company.com:15196_2=968AEBF6ED789B0F..text omitted...F186AB93AC1A6D9BCD5DC5B; httponly; secure; path=/oam/server/auth_cred_submit

Set-Cookie: DCCCtxCookie_ohs-iam119-dcc2.company.com:15196=;expires=thursday, 01-jan-1970 01:00:00 gmt; httponly; secure; path=/
Set-Cookie: DCCCtxCookie_ohs-iam119-dcc2.company.com:15196_COUNT=2; httponly; secure; path=/

...text omitted...

POST /oam/server/auth_cred_submit HTTP/1.1

HTTP/1.1 200 OK
Set-Cookie: DCCCtxCookie_ohs-iam119-dcc2.company.com:15196_1=encdata%3DVd54CUlbcIvr1GqgWQ.........A10C7483C17F9122838; httponly; secure; path=/oam/server/auth_cred_submit
Set-Cookie: DCCCtxCookie_ohs-iam119-dcc2.company.com:15196_2=DF7D483155DE87D6C113.....73D8CB61A00BD741A493989889B505CF; httponly; secure; path=/oam/server/auth_cred_submit
Set-Cookie: DCCCtxCookie_ohs-iam119-dcc2.company.com:15196=;expires=thursday, 01-jan-1970 01:00:00 gmt; httponly; secure; path=/
Set-Cookie: DCCCtxCookie_ohs-iam119-dcc2.company.com:15196_COUNT=2; httponly; secure; path=/

Summary:



Changes

 Customer try to use a custom plugin that is similar with OAM out of the box (OOTB) 'credentialChallengePlugin', but having some more customizations in place. 

Cause

Sign In with your My Oracle Support account

Don't have a My Oracle Support account? Click to get started

My Oracle Support provides customers with access to over a
Million Knowledge Articles and hundreds of Community platforms