My Oracle Support Banner

In WCC 12c, When The LDAP Providers Are Configured For SSL, Users Are Not Getting Their Expected Roles and Accounts (Doc ID 2324326.1)

Last updated on MARCH 05, 2024

Applies to:

Oracle WebCenter Content - Version 12.2.1.0.0 and later
Information in this document applies to any platform.

Symptoms

Note: The issue and the resolution that the KM was written for is applicable to WCC 12c only.

For WCC 11g, this would typically not be an issue.

However, if the virtualization is set to true, to allow authorization from multiple providers, this could be at issue.

In the 12c WebCenter Content domain, the external LDAP providers access the LDAP servers through SSL.

Users log into the WCC successfully but don't get their expected roles and accounts.

This may be due to the LDAP authorization queries failing to access the LDAP server.

The following are some examples in the <WCC MS>-diagnostic.log file when the query fails:

 

Cause

To view full details, sign in with your My Oracle Support account.

Don't have a My Oracle Support account? Click to get started!


In this Document
Symptoms
Cause
Solution
 A. Add the LDAP server certificate in an additional keystore used by the libOVD
 B. Configure libOVD to use TLS 1, TLS 1.1, and TLS 1.2
 C. Configure libOVD to use AES encryption
 D. Apply the JCE policies to Java to utilize AES-256
 E. Restart the domain Admin Server and managed server(s)

My Oracle Support provides customers with access to over a million knowledge articles and a vibrant support community of peers and Oracle experts.