Oracle Access Manager (OAM) Federation Authentication/Authorization Fails When Cancelled on the Identity Provider Side "System Error"
(Doc ID 2278515.1)
Last updated on MARCH 10, 2023
Applies to:
Oracle Access Manager - Version 11.1.2.3.0 and laterInformation in this document applies to any platform.
Symptoms
Oracle Access Manager 11gr2ps3 (OAM 11.1.2.3.x) Federation Authentication/Authorization Fails When Cancelled on the Identity Provider Side "System Error"
- OAM Configured as Service Provider (SP)
- External Identity Provider (IdP) for Federation
- Federation login flow works without any issue in normal scenario
- OAM logs have mutiple null point exception (NPE) errors are seen in the OAM diagnostics log file
Scenario for issue
1. Start SP initiated:
Example
http://<HOSTNAME>.<DOMAIN>:<PORT>/oamfed/sp/initiatesso?providerid=http://<HOSTNAME>.<DOMAIN>:<PORT>/fed/idp&returnurl=http://<HOSTNAME>.<DOMAIN>:<PORT>/cgi-bin/printenv
2. Being redirected to IdP for authentication:
Example
http://<HOSTNAME>.<DOMAIN>:<PORT>/fed/idp/samlv20?SAMLRequest=hZNdb9owFIb/iuVdJ3bSlg6LULGhdkiURZBuaHduY...
3. Click on Cancel button
4. Getting 'System error'
Example
http://<HOSTNAME>.<DOMAIN>:<PORT>/oam/server/fed/sp/sso
Changes
Cause
To view full details, sign in with your My Oracle Support account. |
|
Don't have a My Oracle Support account? Click to get started! |
In this Document
Symptoms |
Changes |
Cause |
Solution |
References |