My Oracle Support Banner

EBS with OID: setPlugin Fails with: ORA-20100: Default create user base does not exists:cn=Users,dc=<COMPANY>,dc=com. Same ldapsearch to OID Fails with: ldap_search: Insufficient access (Log Error: RESULT=50) (Doc ID 2747881.1)

Last updated on FEBRUARY 04, 2021

Applies to:

Oracle Internet Directory - Version 11.1.1 and later
Oracle E-Business Suite Technology Stack - Version 11.0.1 and later
Information in this document applies to any platform.

Symptoms


Oracle Internet Directory (OID) 11g integrated with E-Business Suite (EBS).

EBS registration, de-registration and re-registration works fine.

But the setPlugin fails:

SQL> execute fnd_oid_plug.setPlugin;
BEGIN fnd_oid_plug.setPlugin; END;
*
ERROR at line 1:
ORA-20100: Default create user base does not exists:cn=Users,dc=<COMPANY>,dc=com
ORA-06512: at "APPS.FND_OID_PLUG", line 916
ORA-06512: at line 1


Low level (1) debug OID log shows:

[2020-10-28T19:30:21.76297+00:00] [OID] [TRACE:16] [] [OIDLDAPD] [host: <hostname>] [pid: <PID>] [tid: <TID>] [ecid: <ECID>] ServerWorker (REG):[[
BEGIN
ConnID:729738 mesgID:1 OpID:0  OpName:bind ConnIP:::ffff:<hostname>:<port> ConnDN:Anonymous
INFO : gslfbidbDoBind *  Version=3 BIND dn="orclapplicationcommonname=<EBS_APP_NAME>,cn=ebusiness,cn=products,cn=oraclecontext,dc=<COMPANY>,dc=com" method=128
                 ConnId = 729738, op=0, IpAddr=::ffff:<IP ADDRESS>
2020-10-28T19:30:21.76477 * INFO:gsleswrASndResult OPtime=432 micro sec RESULT=0 tag=97 nentries=0
2020-10-28T19:30:21.76496 * Qtime=0 micro sec
END
]]
[2020-10-28T19:30:21.178335+00:00] [OID] [TRACE:16] [] [OIDLDAPD] [host: <hostname>] [pid: <PID>] [tid: <TID>] [ecid: <ECID>] ServerWorker (REG):[[
BEGIN
ConnID:729738 mesgID:2 OpID:1  OpName:search ConnIP:::ffff:<hostname>:<port> ConnDN:orclapplicationcommonname=<EBS_APP_NAME>,cn=ebusiness,cn=products,cn=oraclecontext,dc=<COMPANY>,dc=com
INFO :gslfseADoSearch BASE = cn=Users,dc=<COMPANY>,dc=com FILTER = (objectclass=*) #REQDATTR = 1 SCOPE = 0 REQDATTRS = orclguid
 TIMELIMIT = 3600 SIZELIMIT = 0 DEREF = 0
2020-10-28T19:30:21.178422 * gslsbsSearch * BASE = "cn=users,dc=<COMPANY>,dc=com" FILTER = "(objectclass=*)" SCOPE = 0
2020-10-28T19:30:21.178625 * INFO:gsleswrASndResult OPtime=563 micro sec RESULT=50 tag=101 nentries=0
2020-10-28T19:30:21.178643 * Qtime=0 micro sec
END
]]
[2020-10-28T19:30:21.280245+00:00] [OID] [TRACE:16] [] [OIDLDAPD] [host: <hostname>] [pid: <PID>] [tid: <TID>]  ServerWorker (SPW):[[
BEGIN
ConnID:729738 mesgID:3 OpID:2  OpName:unbind ConnIP:::ffff:<hostname>:<port> ConnDN:orclapplicationcommonname=<EBS_APP_NAME>,cn=ebusiness,cn=products,cn=oraclecontext,dc=<COMPANY>,dc=com
gslfubADoUnbind : conn=729738 IP=::ffff:<IP ADDRESS>
2020-10-28T19:30:21.280292 * Qtime=0 micro sec
END
]]


The same search fails command line as well:

$ ldapsearch -h <OID_HOSTNAME> -p <PORT> -D "orclapplicationcommonname=<EBS_APP_NAME>,cn=ebusiness,cn=products,cn=oraclecontext,dc=<COMPANY>,dc=com" -w <PASSWORD> -s base -b "cn=users,dc=<COMPANY>,dc=com" objectclass=* orclguid
ldap_search: Insufficient access

$ ldapsearch -h <OID_HOSTNAME> -p <PORT> -D "orclapplicationcommonname=<EBS_APP_NAME>,cn=ebusiness,cn=products,cn=oraclecontext,dc=<COMPANY>,dc=com" -w <PASSWORD> -s base -b "cn=users,dc=<COMPANY>,dc=com" objectclass=*
ldap_search: Insufficient access


The EBS_APP_NAME DN has following memberships (which work for other working environments):

$ ldapsearch -h <OID_HOSTNAME> -p <PORT> -D cn=orcladmin -w "<PASSWORD>" -s sub -b "" "(|(uniquemember=orclapplicationcommonname=<EBS_APP_NAME>,cn=ebusiness,cn=products,cn=oraclecontext,dc=<COMPANY>,dc=com)(member=orclapplicationcommonname=<EBS_APP_NAME>,cn=ebusiness,cn=products,cn=oraclecontext,dc=<COMPANY>,dc=com))" dn
cn=OracleDASCreateUser, cn=Groups,cn=OracleContext
cn=OracleDASDeleteUser, cn=Groups,cn=OracleContext
cn=OracleDASEditUser, cn=Groups,cn=OracleContext
cn=OracleDASCreateGroup, cn=Groups,cn=OracleContext
cn=OracleDASDeleteGroup, cn=Groups,cn=OracleContext
cn=OracleDASEditGroup, cn=Groups,cn=OracleContext
cn=Trusted Applications, cn=Groups, cn=OracleContext
cn=UserProxyPrivilege, cn=Groups,cn=OracleContext,dc=<COMPANY>,dc=com
cn=odisgroup,cn=DIPadmins,cn=Directory Integration Platform,cn=Products,cn=OracleContext
cn=Subscription_Admins,cn=Subscriptions,orclApplicationCommonName=<EBS_APP_NAME>,cn=EBusiness,cn=products,cn=OracleContext,dc=<COMPANY>,dc=com
cn=Subscription_Viewers,cn=Subscriptions,orclApplicationCommonName=<EBS_APP_NAME>,cn=EBusiness,cn=products,cn=OracleContext,dc=<COMPANY>,dc=com

 

Changes

 

Cause

To view full details, sign in with your My Oracle Support account.

Don't have a My Oracle Support account? Click to get started!


In this Document
Symptoms
Changes
Cause
Solution
References


My Oracle Support provides customers with access to over a million knowledge articles and a vibrant support community of peers and Oracle experts.