OAM: Question of authentication Forms Newbie

Hey all the...

I am setting up forms authentication based access to a menu.

I think I have the process correctly, but I'm missing something.

My homepage index.html is not protected, I click on a link to access the menu protégé and loading of the form page. I type in my credentials (username, password) - that are the same in the attributes of the form and the authentication scheme and it tries to authenticate to action:/access/dummy.cgi.

I have read the Administrator's guide and he said to use this file and that it didn't exist, that after authentication, it would continue on the page I had originally linked to. If I do not the user/pass on the second connection type, it takes me to the /access/dummy.cgi and said that the page does not exist.

So... don't know what to do from here.

Here's my config authentication scheme:
name: forms-based authentication scheme
Level 1
Challenge the method: form
parameter of challenge:
CREDS: user_name password
Form: / login.html
Action:/access/dummy.cgi

SSL required: no
activate: Yes

plugins-
mapping the credentials:
obMappingBase = %domaine%", obMappingFilter ="(& (& (objectclass = user)(samaccountname=%username%)) (|) ( ! (obuseraccountcontrol=*)) (obuseraccountcontrol = Activated))) ", obdomain ="domain ".
validate_password:
ObCredentialPassword = "[password]".

Any help would be greatly appreciated.

Thank you.
-Bryan

Hi Bryan,.

"The part that seems out of order is the obMappingBase = %domaine%"*. I don't think the form you also provides the domain value. Try a valid DN searchbase instead, for example obMappingBase = "or is employed, dc is helpdesk, dc = com"* "

Also, try to change the logging webgate configuration so see you the details of the point of view of the webgate on what you see in the browser.

-Vinod

Tags: Fusion Middleware

Similar Questions

  • Questioning the authenticity of a self declared agent Tech Optimizer call me on my land line.

    I got a call from Eric Wilson saying that he intended to call me by Windows because I had downloaded a file from an unauthorized source that would have corrupted my hard dirve. It was very convincing gave me a phone number, 210-767-3298 and his ID # as 10068 me getting a 'Run' command I don't know how to check the validity of such a request, but he was now ready to accept a phone call unsolicited to my line that is listed in the telephone directory under my name. I took his information and decided to enter the Windows Web site Query Optimizer Tech and this is where it takes me. I'd like some food to go back to that.

    You were right to question the authenticity of the phone call. These scam calls are usually of a person representing Windows rather than Microsoft, but in any case, the call was nothing else than a phishing attempt! Do not give any information. Their intentions are simply to separate you from your money.

    Because they use the internet lines and/or phone to complete their fraud, there may be federal agencies in your country who are interested in discovering their calls. Their report directly to the appropriate agency if you feel you can contribute to their arrest and the charges.

    Microsoft do NOT pick up the phone and start dialing customers and never phones/e-mails asking for personal information or asking them to visit a web site! Please do not take into account these calls and hang up immediately.

    Avoid scams that use the Microsoft name fraudulently

    On another note, if you have problems with your computer, please do not hesitate to post a description of the situation and the error messages you received in those forums. We would be happy to help you. (information staff unnecessary or requested !)

  • Of the United Nations capable of me onnecter to a site in IIS7 that has anonymous authentication enabled (newbie question)

    Dear all, I have IIS7 under Win 2008 Server Std. I can ping from another machine using the external IP address and it works. Even when I ping the URL.  But when I try the url in a web browser, I get unable to connect. And conscientious even when I try external IP. Anyubody have any suggestiosn?  Thanks in advance.

    Hello

    Your question of Windows is more complex than what is generally answered in the Microsoft Answers forums. It is better suited for the Windows Server Forums on TechNet. Please post your question in the Windows Server Forums.

    http://social.technet.Microsoft.com/forums/en-us/category/WindowsServer/

  • OAM questions EBS

    Hello

    I use EBS 12.1.3, I need to use OAM (Oracle Access Manager), the scenario to connect our EBS with Microsoft Active Directory OAM jet, I have a question:

    1. If I do this it means that all users need Microsoft Active Directory ? what happens if I create user does not exist in Microsoft Active Directory?  (how it works in this case of sysadmin).
    2. I can connect as EBS username and password and domain user name and password?
    3. All think about any business module if we opt for this solution as iSupplier? where we create the user name of the provider?
    4. If I have oracle MAF solution connect with EBS, this open solution work list notification URL, in this case no need for username and password?
    5. All account for electronic signature in this case?

    Thank you

    Hi HaniYS,

    My thoughts/personal suggestions are below.

    I also suggest you look at the blog of Steven Chan as starting point (it is a great resource with lots of pointers to different areas) - https://blogs.oracle.com/stevenChan/entry/oracle_access_manager_11gr2ps2_certified

    1. If I do this mean that all users need Microsoft Active Directory? What happens if I create user does not exist in Microsoft Active Directory?  (sysadmin how it works in this case).

    -Please note that you can have different profiles of configuration according to your needs. For Sysadmin, there is a local user and administrator authentication is processed locally within the EBS. You are going to control this optional profile Applications SSO Login Types and will be the connection by using the url AppsLocalLogin.jsp

    2. I can connect as EBS username and password and domain user name and password?

    -My personal opinion is that this is not a suggested means to keep these two avenues open. How more you open, there are several security issues that you need to worry. However, you can define the profile of the SSO Applications Login Types to the user level to achieve this. But you must use different URLS. AppsLocalLogin.jsp will be for local authentication. The Gateway URL will be your domain user access.

    3. all think about any business module if we opt for this solution as iSupplier? where we create the user name of the provider?

    -You can implement isupplier and have an external webnode and should be able to configure to manage authentication locally.

    4. If I have oracle MAF solution connect with EBS, this open solution work list notification URL, in this case no need for username and password?

    -I suggest you examine Oracle E-Business Suite Mobile Apps frequently asked Questions (FAQ) (Doc ID 2064887.1)

    Thank you

    Chandra

  • Loop of the ADFS 3.0 authentication forms

    Hello

    I have a problem regarding authentication ADFS 3.0, in order to use SharePoint. When I try to connect through forms authentication, the loop browser return to the login page. This only occurs with users who have something shared on sharepoint. If the user does nothing for him, the answer is that this site has not shared with you, what is right. When I change authentication on ADFS authentication windows its not right market. Unfortunately, I have to make it work with forms authentication.

    Any ideas?

    This issue is beyond the scope of this site (for consumers) and to be sure, you get the best (and fastest) reply, we have to ask either on Technet (for IT Pro) or MSDN (for developers)
    *
  • Question about authentication SDI on AnyConnct and ASA

    Hi all

    I would like to know about the flow of communication for the AnyConnect client authentication and ASA 5520 SDI.

    My client wants to use RSA SecurID On-Demand authenticator (token RSA SecurID On-Demand) between ASA 5520 for SSL VPN and AnyConnect client.

    I understand that ASA provides two modes to allow authentication SDI.

    Native SDI - ASA communicates directly with the SDI server to manage authentication SDI
    RADIUS SDI - ASA communicates to a RADUIS SDI (such as Cisco ACS) proxy and the proxy RADIUS SDI communicates with the SDI server, this means that the ASA does not communicate directly on the SDI server.

    I think that, in general (not consider ASA), the client (remote user) needs access to the web page on the server of the SDI for an SDI authentication token when it starts / SSL VPN connection configuration. However, I understand clearly that how SDI authentication works if I use ASA as secure gateway and configure ASA to allow authentication SDI.

    So my question is how authentication SDI work on ASA when I use ASA as secure gateway and configure ASA to allow authentication SDI (in both modes).

    The customer does not want the AnyConnect client to communicate with the server of SDI directly, but to communicate to ASA only because of their security problem. I don't know why the customer say...

    I found the following information of CEC.

    ==========
    When a remote user using authentication RADIUS SDI connects to the ASA with AnyConnect and attempts to authenticate using RSA SecurID token, the ASA communicates with the RADIUS server, which in turn, communicates with the SDI server for validation.
    ==========

    This means that the AnyConnect client does not communicate with the SDI server directly for authentication of SDI when it starts / SSL VPN connection configuration and the AnyConnect client must communicate with the SAA, because ASA communicates to the SDI server (instead of the AnyConnect client) as proxy?

    Your information would be appreciated.

    Best regards

    Shinichi

    Shinichi,

    I had a quick glance at the data sheet

    http://www.RSA.com/node.aspx?ID=3481

    I couldn't find the authentication of SMS as code ' on demand ', IE. RSA will communicate somehow with network cellular provider to deliver SMS with part user token. (Phone number should uniquely identify a user)

    Please note that it is a little suspicious if the device that you authenticate provide you authentication credentials :-)

    Unless you mean a scenario where users connect through ASA to request a token (be it via NAT or perhaps via SSL Portal?) anyway, ASA is usually unconscious because the user has their authentication from the two parties.

    Let me know if you meant different on the the request token. I'm curious to see what RSA has in store for us.

    Marcin

  • Question when compiling Forms 10 g to 11 g environment.

    Hello

    We are the application forms 10 g to 11g migration. We are grtting question.

    Subclassing information is deleted.

    All canvas items are removed.

    The parent window of canvas is removed.

    All these happen automatically during the compilation of a 10 g form is compiled in 11 g.

    Can someone suggest a proper resolution.

    Related library are LIB_005, WebUtil

    You need to "Manually" will convert your support library (.olb, .fmb, .pll, etc.) before performing the automatic recompilation of your forms.  If you do not have these files converted first (in your case [files LIB_005.pll and webutil]) you will see that the height and width properties (amount others) was set to zero (0) to all objects that are subclassed.  This will give you the impression that the objects no longer exist.

    The solution: open the LIB_005.pll in Forms Builder 11g and save the file manually.  Then replace the objects webutil (webutil.pll, webutil.olb) with the files provided with your forms 11g installation (it should find int: \Middleware\Oracle+FRHome1\forms if you used the default installation directories).  These files will then be located in a directory that appears in the FORMS_PATH (whether in the Windows registry or OS environment variable) Form 11g.

    Craig...

  • Need to reply and report interview question and Oracle Forms 10 G

    Hi gurus

    Soon, I expect my interview for Oracle Forms and Reports 10 G, I'd appreciate it if someone provides me with assistance to find the answers and the related question. Thank you

    Concerning

    Shu


    Hello

    Google is your friend

    http://www.coolinterview.com/type.asp?iType=64

    http://asset-9.soup.IO/asset/10511/3383_9441.PDF

    http://javarevisited.blogspot.com/2012/12/top-10-Oracle-interview-questions-and-answers-database-SQL.html

    Amatu Allah

  • OAM 11gR2PS2 - no authenticated access to public Documents at the Complutense University of MADRID

    Hi all

    We had a requirement to one of our clients, in which the documents who have received the public's access to the Complutense University of MADRID should not be challenged for authentication.

    Examples of URLS that are not in dispute when you use the managed for UCM server port (16200)

    http://xxx.com:16200/cs/idcplg? IdcService = GET_FILE & dID = 1445 & dDocName = DEV_COMPLOGO_31364 & allowInterrupt = 1

    http:// xxx.com : 16200/cs/groups/public/documents/digitalmedia/b2dv/xzmx/~edisp/dev_complogo_31364.jpg

    This GS search page ready must also open without authentication.

    http:// xxx.com : 16200/cs/idcplg? IdcService = GET_DOC_PAGE

    After the configuration of SSO and protection/CS, when I go above URL using the port of OSH only the second opens without challenge me the name of user and password.

    Knowing that I can protect/unprotect URL patterns, I was wondering if this is possible using OAM at all.

    The document is assigned to a group of public safety at the Complutense University of MADRID.

    http://xxx.com:16200/cs/idcplg? IdcService = GET_FILE & dID = 1445 & dDocName = DEV_COMPLOGO_31364 & allowInterrupt = 1

    By looking at the URL, would you be able to identity if this url is to document to the Group of public safety? All of the query parameter would help you to differentiate the document in the public safety group

    If the answer is NO then you will not be able to create policies OAM who could remove the URL

    If the answer is YES you can then use 'Query parameter' section resource OAM to remove the specific URL

    hope this helps

    Concerning

    Aakash

  • Office integration - questions in the form of advanced research

    Hi Experts,

    I'm trying to add a built-in advanced search in my Excel desktop application form.


    JDeveloper version is: 11.1.2.4.0.

    I followed the docs on this page: adding interactivity to your Excel workbook embedded

    Specifically, I'm looking to 8.6.2. I can produce of the Find dialog box when a user clicks on a button, I created in the excel worksheet. However, when the search filter, there is no obvious way to exit and apply the research to the Excel worksheet.

    I added the action of the component where I invoke a download. How to create the link in the dialog search form which is open and the excel spreadsheet? The docs seem to refer to a sample project using workbook of EditPriceList - DT.xlsx. However, I cannot find the project of anywhere. I might be able to understand this if I had access to the project.

    Any help is appreciated! Thank you!

    I recommend that you use the 12.1.2 version.

    This is the homepage of ADFdi: http://www.oracle.com/technetwork/developer-tools/adf/overview/index-085534.html

    Here, you will find the 12.1.2 dev guide and the "ADF Desktop Integration Summit Demo" which includes an example of a pop up work research.

    But to answer your question:

    When the download of the table action is invoked, it downloads the lines currently in the iterator associated with this table. So, your custom web page should make the request prior to closing.

  • Strange question: Hyperion Planning Forms becomes read-only and data are destroyed: 11.1.2.2

    Hello

    Let me start by saying that I am not new to Hyperion Planning. We encounter a weird problem in our Test System. We notice that some (NOT ALL) of our tour of webforms in readonly webforms. all the cells in the gray form. It comes to despite the fact that the read-only checkbox is not checked in the form as well as the security is fine on all dimensions; Basically, all the cells of the form are valid combinations.

    The form becomes readonly, and all the data on this form is always Wiped. This has happened only for two web forms so far. We took a lot of Calc (none of the Calc have cleardata command). We do not know why this is happening. Maybe it's a bug in the product... not sure. has anyone seen this behavior before?

    Please let me know.

    -

    PK

    Please skip this question. It happened because someone on my team had added a member under umbrella of level 0.

  • Questions on the form

    Hi people

    Dreamweaver noob here as I explained a bit earlier to a position different im a complete newbie with DW was the last time I made a website with Microsoft frontpage displays then how I am late.

    At the moment im designing a website from scratch using information from a site that is already in place and running for the content.

    I have a form of "come into contact" I like with captcha form as it is has space for an email, subject, box captch discription of inquiry I want to change this formula to get rid of email, subject and have the name, telephone number and Description of the box of request for information with the Captcha box.

    I've played a bit with the form and its accompanying. Files PHP to try out but when I try the direct box, it sends the email to my selected e-mail address however the information I type in the phone booth and other boxes do not appear in the email

    Can someone let me know what code they want from me so they can help me with this issue please

    Thank you very much

    James

    James-J wrote:

    Your error message, you need to set it! That's why you get the error message. Set it by placing it here-

    $name = $_POST ['name'];

    $telephone = $_POST ['phone'];

    $message = $_POST ['message'];

    $from = $_POST ['from'];

    $verif_box = $_POST ['verif_box'];

    $subject = "all you want to come after the words" online form: "in the mail below command."

    Sorry to be a noob Murray do not know if I this part of your instructions

    In the code, you have a variable $subject:

    mail ("[email protected]", "online form: '.") $subject,

    You must define the variable $subject as Murray has done outside and taking into account the statement you of where to place it:

    $name = $_POST ['name'];

    $telephone = $_POST ['phone'];

    $message = $_POST ['message'];

    $from = $_POST ['from'];

    $verif_box = $_POST ['verif_box'];

    $subject = "all you want to come after the words" online form: "in the mail below command."

    So it could be... or it might be as above (regardless of the text you want to follow "Online form" in the mail command.)

    $name = $_POST ['name'];

    $telephone = $_POST ['phone'];

    $message = $_POST ['message'];

    $from = $_POST ['from'];

    $verif_box = $_POST ['verif_box'];

    $subject = "Request" about this or that;

  • Question on a form in a DPS document importing

    Hi all

    I create a DPS magazine for Oakland Zoo using InDesign CS6. For one of the pages, there are several photos submitted by readers. I would like to create a form where readers - through multiple choice questions - can choose what photo/s they think are the best. What I've tried and done the research, you can create forms in PDF format, that's why I'm here.

    Although I like sort of a total score on the bottom, it is not necessary. Right now I would have them go to our Facebook link where they can see who is / was the winner.

    Is there a way to create a form of multiple choice in InDesign is easy to DPS? Am I missing something that is easy to do, but I think not?

    Thank you for your time and the answer to that.

    Something like that would have to do with HTML. Please post one

    traces in the DPS forum. I have no time to move this there now.

  • Custom OAM post url connection form?

    We are implementing OAM 11g to protect the customer demand. Web server is apache 2.2 under Linux.

    Our requirement is to use the login form existing to preserve the user experience. I'll try to find out what should be the form action url to display the credentials to the login form?

    Doc OAM 11g-based it is expected that have forms of connection customized to show credentials to the server OAM - < form action = "/ oam/Server/auth_cred_.
    present"> or" http://oamserverhost:port / oam/Server/auth_cred_submit.

    However with OAM 10 g, we used to submit credentials to the form for webgate instead of opening/expose the url of the OAM server through proxy on the internet.

    Appreciate some help/advice on what should be the form submit url action when we use the login with OAM 11 g.


    Thank you.
    Amol

    Hello Amol,

    The doc is correct - the auth_cred_submit is a url that is made available for the specific purpose to collect identification information. In R2 of OAM, is expected to activate this feature be placed in the DMZ (instead of on the server of the oam) but for now details/deadlines this feature are not available.

    Kind regards
    Colin

  • Display Arabic characters as question marks in form 10g

    We have migrated our application forms 6i to 10g of form and in forms 10g, display Arabic as question marks characters while it now appears properly in the old application using forms 6i. I already updated the character set AR8MSWIN1256 in the registry, but it did not help. Someone please help.

    Well, I agree with you Sarah Merci for your comments pls take a look here
    There is a related article, the best alternative that we create an instance of the db that worked well...

    Kind regards

    Amatu Allah

Maybe you are looking for