P6 EPPM Web Application Configured for Single Sign-on (SSO) Over SSL Redirects From HTTPS to HTTP Protocol
Last updated on OCTOBER 19, 2016
Applies to:Primavera P6 Enterprise Project Portfolio Management - Version 7.0 and later
Information in this document applies to any platform.
After configuring the P6 EPPM web based applications for Single Sign-On (SSO) with Oracle Access Manager (OAM) and testing a connection to the web application over SSL (mainly around the SSL connection with the SSO redirection):
The web application is redirected to the SSO authentication scheme (for example, form based authentication) by making a https://$SSOHost:SSLPort>/obrareq.cgi? request, but after the authentication scheme is satisfied (for example, entering username/password for a form based authentication scheme) redirection to the OAM server by making /obrar.cgi? request over non SSL occurs (for example, http://$SSOHost:$Port/obrar.cgi?) causing the SSO authentication process to fail and prevent redirection back to the P6 EPPM web based application.
For the browser not to redirect from HTTPS to HTTP protocol during the SSO authentication process.
STEPS TO REPRODUCE
1. Enter P6 EPPM web url protected by SSO in a browser
2. Redirection to OAM Login page occurs (by making a https://$SSOHost:$SSLPort/obrareq.cgi? request)
3. OAM Server authenticates/authorizes the user's request & thus makes a redirect back to the server by making a http://$SSOHost:$Port/obrar.cgi? request. Thus here lies the issue, this obrar.cgi redirect should be on https:// rather it is on http://
Sign In with your My Oracle Support account
Don't have a My Oracle Support account? Click to get started
My Oracle Support provides customers with access to over a
Million Knowledge Articles and hundreds of Community platforms