TrustToken Value Is Not Validated When Single Sign On = TRUE On Security Adapter
(Doc ID 2769405.1)
Last updated on NOVEMBER 24, 2022
Applies to:
Siebel CRM - Version 20.11 and laterInformation in this document applies to any platform.
Goal
1) Created a new profile as follows:
Name: DBSecAdptSSO
Alias: DBSecAdptSSO
Type: InfraSecAdpt_DB
DBSecAdpt_SharedDBUsername: LDAPUSER
DBSecAdpt_SharedDBPassword: W****1
DBSecAdpt_SingleSignOn: True
DBSecAdpt_TrustToken: TE***
2) Created copy of EAIObjMgr_enu component named EAISSOObjMgr_enu:
SecAdptName: DBSecAdptSSO
SecAdptMode: DB
3) Add entry to AI Profile:
Application Name: eaisso
Object Manager: eaissoobjmgr_enu
The SOAP request to the new EAISSOObjMgr_enu, the TrustToken value is not validated. The SOAP request succeeds with any valid username with any value as the password.
Solution
To view full details, sign in with your My Oracle Support account. |
|
Don't have a My Oracle Support account? Click to get started! |
In this Document
Goal |
Solution |