My Oracle Support Banner

'Invalid request / Error While Processing Request' Creating or Editing User in OFSAAI 8.0.6.1 (Doc ID 2456864.1)

Last updated on APRIL 28, 2023

Applies to:

Oracle Financial Services Analytical Applications Infrastructure - Version 8.0.6 to 8.0.6 [Release 8]
Information in this document applies to any platform.
Oracle Financial Services Analytical Applications (OFSAA)

Symptoms

After upgrading to Oracle Financial Services Analytical Applications Infrastructure (OFSAAI) 8.0.6.1, in Identity Management > User Management, when attempting to create a new user, the error below occurs after entering the user details and clicking on Save:

Invalid request / Error while processing request

Please contact your System Administrator for more information.

Additionally, the following error is output to the Websphere SystemOut.log:

[9/20/18 17:01:43:845 EDT] 00000100 DefaultName:I W [SECURITY FAILURE Anonymous:null@unknown -> /DefaultName/IntrusionDetector] Invalid input: context=ValidationFramework, type(OFS_AAI_SMS_user_name_exp)=[A-Za-z0-9_.'-]*, input=Jane Doe
  org.owasp.esapi.errors.ValidationException: ValidationFramework: Invalid input. Please conform to regex [A-Za-z0-9_.'-]* with a maximum length of 11
       at org.owasp.esapi.reference.validation.StringValidationRule.checkWhitelist(StringValidationRule.java:144)
       at org.owasp.esapi.reference.validation.StringValidationRule.checkWhitelist(StringValidationRule.java:160)
       at org.owasp.esapi.reference.validation.StringValidationRule.getValid(StringValidationRule.java:284)
       at org.owasp.esapi.reference.DefaultValidator.getValidInput(DefaultValidator.java:214)
       at org.owasp.esapi.reference.DefaultValidator.getValidInput(DefaultValidator.java:185)
       at com.ofs.aai.common.security.OFSAASecurityValidator.validateInputESAPI(OFSAASecurityValidator.java:521)
       at com.ofs.aai.common.security.OFSAASecurityValidator.validateRequestObject(OFSAASecurityValidator.java:158)
       at com.iflex.fic.ficml.SMSServlet.doPost(SMSServlet.java:184)
       at javax.servlet.http.HttpServlet.service(HttpServlet.java:595)
       at javax.servlet.http.HttpServlet.service(HttpServlet.java:668)
       etc.

You do not understand why the error occurs.

Cause

To view full details, sign in with your My Oracle Support account.

Don't have a My Oracle Support account? Click to get started!


In this Document
Symptoms
Cause
Solution
References


My Oracle Support provides customers with access to over a million knowledge articles and a vibrant support community of peers and Oracle experts.