OID Java External Auth Plugin Not Working When Using SSL Mode (Doc ID 462285.1)

Last updated on MARCH 08, 2017

Applies to:

Oracle Internet Directory - Version 10.1.4.1 and later
Information in this document applies to any platform.

Symptoms

AD External Authentication does not work when configured for SSL.

OIDLDAPD log shows

and error similar to

java.io.IOException: The wallet "/data/oracle/mw_sso/oid_inst/OID/admin/oid2cawallet_2" is not a 'normal' file

 

and

 

2007/10/10:17:09:05 * ServerWorker (REG):7
ConnID:0 * mesgID:1 * OpID:0 * OpName:bind
ConnIP:10.141.160.139 ConnDN: Anonymous
INFO : gslfbidbDoBind * Version=3 BIND dn="CN=abrown,CN=Users,DC=ad_realm,DC=o
racle,DC=com" method=128
ConnId = 0, op=0, IpAddr=10.141.160.139
17:09:05 * CLASSPATH = -Djava.class.path=/u01/app/oracle/product/iAS/101401/Infr
a/ldap/jlib/ospf.jar:/u01/app/oracle/product/iAS/101401/Infra/jlib/ldapjclnt10.j
ar:/u01/app/oracle/product/iAS/101401/Infra/jlib/jssl-1_1.jar:/u01/app/oracle/pr
oduct/iAS/101401/Infra/jdbc/lib/classes12.zip:$CLASSPATH
17:09:06 * SUCCESS * sgslpvm_getJvmEnv * Creation of the JVM succeeded
17:09:06 * SUCCESS * sgslpvm_getJvmEnv * Attach to the JVM succeeded
17:09:07 * Server Java Plug-in * Entering oidexplg when_bind_replace
17:09:07 * Server Java Plug-in * Entering ExternalEntry with bind request
17:09:07 * Server Java Plug-in * User DN: cn=abrown,cn=users,dc=ad_realm,dc=orac
le,dc=com
17:09:07 * Server Java Plug-in * eDN: CN=abrown,CN=Users,DC=acme,DC=com
17:09:07 * Server Java Plug-in * Entering ExternalConnectivity
17:09:10 * SUCCESS * gslsbbExecWhenReplacePlugin * Successfully Executed Java Pl
ug-in oidexplg.jar
17:09:10 * INFO * gslsbbExecWhenReplacePlugin * Operation Result Code returned f
rom the when_replace_bind Java plug-in : 49
17:09:10 * INFO : gsleswrASndResult2 RESULT = 49 nentries=0

--------------------------------------------------------------------------------------------------

Modify the plugin settings to not use SSL and authentication is successful.

Cause

Sign In with your My Oracle Support account

Don't have a My Oracle Support account? Click to get started

My Oracle Support provides customers with access to over a
Million Knowledge Articles and hundreds of Community platforms