Unable connect user DefaultAuthenticator

Hello.

I have 3 authenticators in my weblogic security realms: 2 of them are default and OIDAuthenticator is used for permission to LDAP users.

Everyone has SUFFICIENT flag.

auth.png

I have no problem with users of LDAP authentication in my web applications, but somehow I did not have to allow a user to test created in DefaultAuthenticator in a simple java ee application.

Here's my share of web.xml simple app:

  <security-constraint>
    <web-resource-collection>
      <web-resource-name>hello-web-res</web-resource-name>
      <url-pattern>/hello</url-pattern>
    </web-resource-collection>
    <auth-constraint>
      <role-name>our-user</role-name>
    </auth-constraint>
  </security-constraint>
  <login-config>
    <auth-method>BASIC</auth-method>
    <realm-name>myrealm</realm-name>
  </login-config>
  <security-role>
    <description>any authenticated user</description>
    <role-name>our-user</role-name>
  </security-role>

and weblogic.xml (I assumed 'users' are by default to any user role - is that correct?)

  <security-role-assignment>
    <role-name>our-user</role-name>
    <principal-name>users</principal-name>
  </security-role-assignment>

test user in weblogic:

auth.png

So, if I try to log into my simple application as a user test1, I get error 403.

Logging with any LDAP user is fine.

What is the reason? How to authenticate the user test of DefaultAuthenticator?

Thank you.

WebLogic 10.3.6

Thanks for the attention.

Copypasted to hastily and incorrectly set the url scheme.

Everything works as it should now.

Tags: Fusion Middleware

Similar Questions

  • Unable connect user AD to any role assignment

    We created users being authenticated by OBIEE 11 g AD. In the ad, we currently have the user, password and information associated with all created users group.

    According to the behavior of the system if group a user an is not mapped to a role within the EM, it should automatically be labeled authenticated role which, being a part of their role of 'BIConsumer' will give the privileges to this user. This doesn't seem to be the case. Any point of view on why this would be the case?

    -If there is a group associated to AD user in the active directory itself, is it mandatory that ad groups be associated with a role? What I mean by that is, if we block init level RPD to map users authenticated to imported within the RPD and EM custom database roles, they would not work unless there is a direct ad group for role assignment?

    The RPD had no access 'Authenticated users' and "Consumer Bi-role" nec for all areas, among other permissions layer of presentation, so at least that a user has been assigned to a role that could access any of the areas of knowledge, that the default authentication would not work.

  • Why remove the Terminal Server on Windows Server 2008 Standard Server HKEY_USERS\S -? When one connects users off?

    Why remove the Terminal Server on Windows Server 2008 Standard Server HKEY_USERS\S -? When one connects users off?

    I have a setting wrong?
    I can't find a setting that relates to this in either Terminal Server Config or Terminal Server Manager...
    Any help would be much appreciated.

    Hi Richard,

    Thanks for posting your question on Microsoft Community!

    I suggest you to ask your question in the section service Terminal Server TechNet forums for assistance.

    http://social.technet.Microsoft.com/forums/en-us/category/WindowsServer

    I hope this helps.

  • Get a variable name for a connected user

    My application displays dynamic elements based on the value of a variable userid i.e. If userid is 1, all the items in my collection of table with 1 user ID will be displayed in a tilelist component.

    What I want to do, is to have a log in the system which will connect users but also to get the ID for this specific user and set it as my userid variable in my application, so the app knows what the user is connected and can display information related to that user.

    My mysql table that stores all users has the columns user ID (the value I want which is specific to each user) user name and password.

    I've been using this tutorial that lets the user open a session and if the connection is successful, a message is displayed, but this solution does not have the application store that the user is connected through userid: -.

    http://cookbooks.Adobe.com/post_Create_a_login_system_with_Flex_and_PHP-7243.html

    Can someone give me advice on how to do or what I need to do to change this example to get the user ID for the user that is logged into my userid variable in my application please or recommend something similar?

    This is the PHP code. Let me know if you need Flex code as well. I tried to comment as much as possible. Let me know if you need clarification on any room.

    \n";
         $xmlOutput .= "\n";
         $xmlOutput .= "$message\n";
         $xmlOutput .= "$data\n";
         $xmlOutput .= "$function\n";
         $xmlOutput .= "\n";
    
         echo $xmlOutput;
    }
    
    ?>
    

    Sorry for the late response. I had to attend a workshop.

  • The idea to send a message to all connected users.

    Dears,

    I am developing through oracle forms an idea of sending a message pop up to all connected users.
    Example, I need to inform users to quit smoking in 5 minutes due to a restart of the application server.

    I thought about a timer trigger that will check every 5 seconds or 10 seconds one value in a table somewhere. But I don't want to use the timer associated with forms of oracle triggers.

    Y at - it an idea?

    Please let me know.

    Joe

    Normally, there is a clue when the Java Bean needs a greater than 1.3 JRE, so I guess (but it must be confirmed by a real test) that she will be executed with the JInitiator.

    François

  • What are the features available in controller to find connection user details

    Hello world


    What are the features available in controller to find connection user details

    ex: Using String userId = String.valueOf (pageContext.getUserId ());

    We can find the login user ID

    Similarly we can find user login name, profiles, etc.

    I want to just list the features available in the controller of the user of the connection...


    Kind regards

    Krishna

    Hello Krishna,
    You can find

    pageContext.getUserName ();
    pageContext.getResponsibilityName ();

    pageContext.getResponsibilityId ();
    pageContext.getOrgId ();

    etc...
    in Jdeveloper type pageContext. ' Ctrl + space bar ', you can find the list of available methods.

    Kind regards
    Naren.

  • Unable to Sign In - error iTunes Connect user authentication (2006)

    Hello guys, I am unable to connect to my iTunes Connect from my iPhone 6.

    The error that says "Unable to Sign In French - error authenticating user iTunesConnect (2006).

    Anyone faced similar questions before?

    Check your USB connections

    If you see the error 4005, 4013, 4014, learn what to door. If you see one of the errors below, you might have a USB connection problem:

    • 13, 14, 1600, 1601, 1602, 1603, 1604, 1611, 1643-1650
    • 2000, 2001, 2002, 2005, 2006, 2009
    • An error message that includes, "an invalid response.

    Follow these steps to see if the problem is with your USB cable, a USB port or computer. Try again after each step:

    1. Use the USB cable supplied with your device. If you do not, try a different cable USB Apple.
    2. Switch to a different USB port on your computer. Do not connect on your keyboard.
    3. Plug it into another computer.
    4. If you still see the error, you can check for any other problem USB, with the third-party security softwareand the problems with hardware.

    If the problem persists, contact The Apple support.

    Get help with iOS update or restore errors - Apple Support

  • Unable connect to vmware 4.1 console with previosly created user

    Hello

    I created the user on vmware esx 4.1 host. I needed this user to connect with ssh remotely. I've created by users and groups, and everything is ok.

    When I try to log in, access denied!

    I try and impossible to connect local console connection, the same situation. I isolate the problem, no problem of environment with permissions because I'am in su to the root user.

    Thanks for the support, Miki

    Known issue. Solution here:

    http://KB.VMware.com/selfservice/microsites/search.do?language=en_US&cmd=displayKC&externalID=1024235

    Users Admin role.

    Concerning

  • LDAP UNABLE TO CONNECT USERS

    Hello

    I NAC, I added the LDAP authentication and I tested the NAC - cam to LDAP using the test of authentication and it is authenticated successfully, but if use that users log in to my PC it says invalid username and password.

    What may be the cause of this problem. ? Please advise on this.

    Thank you.

    Hello

    You have activated the LDAP authentication provider in your login Pages?

    Faisal

  • Unable connect plus

    Hello

    Since this morning, we are unable to connect with vfoglight more - we use vFoglight Pro 6.5.

    The error we get in the ManagementServer_xxxxxx is:

    2011-04-18 11:34:46.978 [http - 0.0.0.0 - 8443-2] ERROR org.jboss.security.auth.spi.UsersRolesLoginModule - cannot load the files users/passwords / role

    java.io.IOException: no properties file: users.properties or default: found defaultUsers.properties

    at org.jboss.security.auth.spi.Util.loadProperties(Util.java:315)

    at org.jboss.security.auth.spi.UsersRolesLoginModule.loadUsers(UsersRolesLoginModule.java:186)

    at org.jboss.security.auth.spi.UsersRolesLoginModule.createUsers(UsersRolesLoginModule.java:200)

    at org.jboss.security.auth.spi.UsersRolesLoginModule.initialize(UsersRolesLoginModule.java:127)

    at sun.reflect.NativeMethodAccessorImpl.invoke0 (Native Method)

    at sun.reflect.NativeMethodAccessorImpl.invoke(NativeMethodAccessorImpl.java:39)

    at sun.reflect.DelegatingMethodAccessorImpl.invoke(DelegatingMethodAccessorImpl.java:25)

    at java.lang.reflect.Method.invoke(Method.java:597)

    at javax.security.auth.login.LoginContext.invoke(LoginContext.java:756)

    to javax.security.auth.login.LoginContext.access$ 000 (LoginContext.java:186)

    to javax.security.auth.login.LoginContext$ 4.run(LoginContext.java:683)

    at java.security.AccessController.doPrivileged (Native Method)

    at javax.security.auth.login.LoginContext.invokePriv(LoginContext.java:680)

    at javax.security.auth.login.LoginContext.login(LoginContext.java:579)

    at org.jboss.security.plugins.JaasSecurityManager.defaultLogin(JaasSecurityManager.java:603)

    at org.jboss.security.plugins.JaasSecurityManager.authenticate(JaasSecurityManager.java:537)

    at org.jboss.security.plugins.JaasSecurityManager.isValid(JaasSecurityManager.java:344)

    at org.jboss.web.tomcat.security.JBossSecurityMgrRealm.authenticate(JBossSecurityMgrRealm.java:491)

    at org.apache.catalina.authenticator.FormAuthenticator.authenticate(FormAuthenticator.java:257)

    at org.jboss.web.tomcat.security.ExtendedFormAuthenticator.authenticate(ExtendedFormAuthenticator.java:86)

    at org.jboss.web.tomcat.security.GenericHeaderAuthenticator.authenticate(GenericHeaderAuthenticator.java:155)

    at org.apache.catalina.authenticator.AuthenticatorBase.invoke(AuthenticatorBase.java:416)

    at org.jboss.web.tomcat.security.JaccContextValve.invoke(JaccContextValve.java:84)

    at org.apache.catalina.core.StandardHostValve.invoke(StandardHostValve.java:127)

    at org.apache.catalina.valves.ErrorReportValve.invoke(ErrorReportValve.java:102)

    at org.jboss.web.tomcat.service.jca.CachedConnectionValve.invoke(CachedConnectionValve.java:157)

    at org.apache.catalina.authenticator.SingleSignOn.invoke(SingleSignOn.java:393)

    at com.quest.nitro.web.tomcat.SmAuthValve.invoke(SmAuthValve.java:234)

    at com.quest.nitro.web.tomcat.DenyRemoteRequestValve.filterRequest(DenyRemoteRequestValve.java:90)

    at com.quest.nitro.web.tomcat.DenyRemoteRequestValve.invoke(DenyRemoteRequestValve.java:97)

    at com.quest.nitro.web.tomcat.RequestEncValve.invoke(RequestEncValve.java:61)

    at org.apache.catalina.core.StandardEngineValve.invoke(StandardEngineValve.java:109)

    at org.apache.catalina.connector.CoyoteAdapter.service(CoyoteAdapter.java:262)

    at org.apache.coyote.http11.Http11Processor.process(Http11Processor.java:844)

    at org.apache.coyote.http11.Http11Protocol$ Http11ConnectionHandler.process (Http11Protocol.java:583)

    to org.apache.tomcat.util.net.JIoEndpoint$ Worker.run (JIoEndpoint.java:446)

    at java.lang.Thread.run(Thread.java:619)

    Our server has been patched this weekend with the latest MS patches - I think he could have caused this problem.

    Should I open a case or?

    Kind regards

    Christoffer Dahl

    Please call the technical support of Quest and open it as a level of gravity 1 as soon as POSSIBLE.

    Support phone numbers are located here https://support.quest.com/contactsupport.aspx (tabs at the bottom of phone number in your area).

    Send me the case ID # [email protected] so we can follow it.

    If you use Directory Services to try to use the ID of the foglight user password authentication.

    Golan Shem-Tov

    Quest Software

  • Unable connect to the CC &amp; B

    Hello world
    I am new to CC & B spent the installed without any problems during the installation of the frame V2.2.0 I specified:
    == > application admin user = usertest1
    == > application admin user password = usertest100
    My problem is that I can't connect to cc & b using usertest1/usertest100 cc & b shows unable to open a session.
    When I add < username = 'SYSUSER"password ="sysuser003"roles ="cisusers, administrator, Manager"/ > to my C:\SPL\envtest1\product\tomcatBase\conf\tomcat-users.xml
    It works, I am able to connect using only SYSUSER/sysuser003 but not not using the user that I created while I was installing the framework and the cc & b.

    It's my environ.ini:

    THIS IS AN UPDATED FILE SYSTEM!
    # DO NOT MANUALLY EDIT
    MPLSTART = N
    NLS_LANG = AMERICAN_AMERICA. UTF8
    SPLENCPASS = 215452445153445253100F0F21
    JVMchild_OPTIONS =-Xmx512m-Server - Dfile.encoding is ISO8859_1 - cp C:\SPL\envtest1\splapp\standalone\config;. C:\SPL\envtest1\splapp\standalone\lib\activation_api-1.1.jar; C:\SPL\envtest1\splapp\standalone\lib\commons-BeanUtils-core-1.7.0.jar; C:\SPL\envtest1\splapp\standalone\lib\commons-CLI-1.1.jar; C:\SPL\envtest1\splapp\standalone\lib\commons-codec-1.3.jar; C:\SPL\envtest1\splapp\standalone\lib\commons-collections-2.1.1.jar; C:\SPL\envtest1\splapp\standalone\lib\commons-FileUpload-1.2.jar; C:\SPL\envtest1\splapp\standalone\lib\commons-HttpClient-2.0.2.jar; C:\SPL\envtest1\splapp\standalone\lib\commons-IO-1.3.2.jar; C:\SPL\envtest1\splapp\standalone\lib\commons-lang-2.2.jar; C:\SPL\envtest1\splapp\standalone\lib\commons-logging-1.0.4.jar; C:\SPL\envtest1\splapp\standalone\lib\concurrent-1.3.4.jar; C:\SPL\envtest1\splapp\standalone\lib\dom4j-1.6.1.jar; C:\SPL\envtest1\splapp\standalone\lib\hibernate-3.2.5.GA.jar; C:\SPL\envtest1\splapp\standalone\lib\icu4j-3.6.1.jar; C:\SPL\envtest1\splapp\standalone\lib\jaxen-1.1.1.jar; C:\SPL\envtest1\splapp\standalone\lib\jcip-annotations.jar; C:\SPL\envtest1\splapp\standalone\lib\jta.jar; C:\SPL\envtest1\splapp\standalone\lib\jtds-1.2.jar; C:\SPL\envtest1\splapp\standalone\lib\log4j-1.2.15.jar; C:\SPL\envtest1\splapp\standalone\lib\mail_api-1.4.jar; C:\SPL\envtest1\splapp\standalone\lib\mfcobol.jar; C:\SPL\envtest1\splapp\standalone\lib\ojdbc5-11.1.0.7.0.jar; C:\SPL\envtest1\splapp\standalone\lib\orai18n-collation.jar; C:\SPL\envtest1\splapp\standalone\lib\orai18n-mapping.jar; C:\SPL\envtest1\splapp\standalone\lib\orai18n-utility.jar; C:\SPL\envtest1\splapp\standalone\lib\orai18n.jar; C:\SPL\envtest1\splapp\standalone\lib\serializer-2.7.0.jar; C:\SPL\envtest1\splapp\standalone\lib\spl-base-2.2.0.jar; C:\SPL\envtest1\splapp\standalone\lib\spl-CCB-2.3.0.jar; C:\SPL\envtest1\splapp\standalone\lib\spl-servicebeaninterface-2.2.0.jar; C:\SPL\envtest1\splapp\standalone\lib\spl-ServiceClient-2.2.0.jar; C:\SPL\envtest1\splapp\standalone\lib\spl-shared-2.2.0.jar; C:\SPL\envtest1\splapp\standalone\lib\spl-SPML-2.2.0.jar; C:\SPL\envtest1\splapp\standalone\lib\spl-Web-2.2.0.jar; C:\SPL\envtest1\splapp\standalone\lib\spl-Xai-2.2.0.jar; C:\SPL\envtest1\splapp\standalone\lib\stax-API-1.0.1.jar; C:\SPL\envtest1\splapp\standalone\lib\stax2.jar; C:\SPL\envtest1\splapp\standalone\lib\staxmate-0.9.1.jar; C:\SPL\envtest1\splapp\standalone\lib\wstx-ASL-3.2.1.jar; C:\SPL\envtest1\splapp\standalone\lib\xalan-2.7.0.jar; C:\SPL\envtest1\splapp\standalone\lib\xmlparserv2.jar; C:\SPL\envtest1\splapp\standalone\lib\xquery.jar; C:\SPL\envtest1\splapp\standalone\lib\xstream-1.2.1.jar; C:\SPL\envtest1\splapp\standalone\lib\yjp-controller-API-Redist.jar
    WEB_SPLUSER = usertest1
    SPLEBASE = C:\SPL\envtest1
    XAIApp = XAIApp
    SPLDB = oracle
    SPLENVIRON = envtest1
    WEB_maxAge = 28800
    WEB_WLPORT = 6500
    WEBENCPASS = 21524F4B40434C484D21
    WEB_SPLPASS = usertest100
    ENCODING = true
    DBPASS = ENC (gcG8M + UVKxwedHZ6ftn2YD0OPkT6l + z0r11c + jsQh7M =)
    DIRSEP =.
    SPLADMIN = administrator
    WEB_isDevelopment = true
    DIALECT = org. Hibernate.Dialect.Oracle10gDialect
    REL_CBL_THREAD_MEM = false
    CMPDB = oracle
    ORACLE_SID = ccbdemo
    appViewer = appViewer
    DESC = 1 test environment
    WEB_TCATSHUTPORT = 6501
    WLSSPL = Y
    SPLWEBAPP = SPLWeb
    MPLADMINPORT = 6502
    high value = \uF8FF
    SPLWAS = TCAT
    WEB_isExpanded = true
    SPLApp = root
    SPLADMINGROUP = cisgrp
    SPLOUTPUT = C:\SPL\sploutput\envtest1
    RJVM = true
    BSN_WLHOST = ITNVAFRICA
    JavaEncoding = UTF8
    WEB_maxAgeI = 28800
    XAISTARTWAITTIME = 90
    DOC1SCRIPT = _ccbPrintDoc.cmd
    SPLSERVICEAPP = SPLService
    BSNENCPASS = 21524F4B40434C484D21
    BSN_JVMCOUNT = 2
    DB2MPLuse =
    DBENCPASS = 214C445148444C21
    modules = Basic, CCB, cm
    WEB_WLHOST = ITNVAFRICA
    BATCHTHREADS = 5
    SPLVERSION_NUM = 2.2.0
    WEB_preloadall = false
    DBNAME = ccbdemo
    DOC1BILLSCRIPT = _ccbPrint.cmd
    WEB_WLAUTHMETHOD = FORM
    BATCHENABLED = true
    help = help
    DBUSER = cisadm
    SPLVERSION = V2.2.0
    BSN_RMIPORT = 6503
    BATCHDAEMON = true
    DBDRIVER = Oracle.JDBC.Driver.OracleDriver
    DBPORT = 1521
    JVMMEMORYARG = 512
    DBCONNECTION=JDBC:Oracle:thin:@ITNVAFRICA:1521:ccbdemo
    DBSERVER = ITNVAFRICA
    WEB_isAppViewer = true
    jvmcommand=C:/SPL/Java/bin/Java.exe

    It's my C:\SPL\envtest1\product\tomcatBase\conf\tomcat-users.xml
    <? XML version = "1.0" encoding = "utf - 8"? >
    < tomcat-users >
    < role rolename = 'Manager' / >
    < role rolename = 'tomcat' / >
    < role rolename = "admin" / >
    < role rolename = "wamusers" / >
    < role rolename = "mwmusers" / >
    < role rolename = "role1" / >
    < role rolename = "cisusers" / >
    < role rolename = "bausers" / >
    < role rolename = "nmsusers" / >
    < username = "both" password = "tomcat" roles = "tomcat, role1" / >
    < username = "tomcat" password = "tomcat" roles = "tomcat" / >
    < username = 'SYSUSER"password ="sysuser003"roles ="cisusers, administrator, Manager"/ >
    < username = "role1" password = "tomcat" roles = "role1" / >
    < username = password "SYSUSER12" = "sysuser12" roles = "cisusers, administrator, Manager" / >
    < username = password "usertest1" = "usertest100" roles = "cisusers, administrator, Manager" / >
    < username = password "SPLSLK" = "SPLSLK12" roles = "cisusers, administrator, Manager" / >
    < / tomcat-users >

    My question is: can connect to CC & B using a different username than SYSUSER? If Yes, please what Miss me and what I need to do?

    Any help could be appreciated,

    Thank you

    The answer is YES, it is possible to connect using one different user than SYSUSER CC & B. The tomcat - users.xml file configuration of the Web server to tomcat user, but you must create the user of the Application as well. The reason why you are able to connect to the CC & B using the SYSUSER user just after installation, this is because the user is already registered in the application itself, in other words, is to live in the CC & B database.

    What you need to do, is to connect using SYSUSER and go to the Admin Menu > U > user, search for the SYSUSER and duplitace it. You can specify your user name here and special security (enforcement), but the password must be configured in the file users.xml - tomcat. Make sure you just him match Username the user name that you put in the file users.xml - tomcat.

    I hope it helps.

  • NB510 - failed connection user profile cannot be loaded

    Out of the blue my NB510 will not connect me and so to load my computer at all. When I get the password to my profile, what happens with the message error "the service user profile Service has no login, cannot load user profile".

    Any information would be massively appreciated that I have to write a thesis on my NB510 as soon as possible!

    Hello

    It is that Microsoft related question to verify please http://support.microsoft.com/kb/947215
    Googling around you can find many Microsoft articles and forums on this issue.

  • iMessage unable connect the new Macbook Pro

    Hello

    I just bought a new Macbook Pro today.

    I already have a Macbook air with imessage and FaceTime.

    But when I want to connect to my iMessage on my Macbook Pro to nog I still get the same error: "an error occurred while verifying identity.

    Can someone help me?

    If it comes with OS X 10.11.4 it is a problem with iMessage and Face Time prevents a user connection. There should be a solution soon...

  • Unable connect admin

    There is probably a really answer to this, but please help guys.

    My partner and I have two separate profiles on the iMac.  I can connect without problems, but since there was an update of the last week, my partner cannot.  She types his password and then the screen goes fuzzy and the small rotation icon appears.  Can't go back a screen to turn off the Mac and then new.

    Don't see why this is happening so please help if you can.

    Phil

    You forgot your password

    Lion, Mountain Lion or the Mavericks

    HD recovery start:

    Restart the computer and after the buzzer, press on and hold down the COMMAND and R until the menu screen appears.

    When the menu bar appears, select Terminal from the Utilities menu.

    Resetpassword , at the command prompt and press RETURN. Follow

    the instructions in the dialog that appears.

    Or see:

    Reset a password in Mac OS X 10.7 Lion

    OS X Lion mountain - reset a login password,

    OS X Mavericks-solve password problems,.

    OS X Lion-Apple ID can be used to reset your password for the user account.

    Snow Leopard or earlier version with installer DVD

    Mac OS X 10.6 - If you forgot your administrator password.

    OS X - change or reset a password for account (Snow Leopard or earlier version).

    Snow Leopard or earlier version without installer DVD

    How to reset your Mac OS X password without an installation disk. MacYourself

    Reset password for OS X without an OS X CD - Tech News and Analysis

    How to create a new account administrator - Mac Hack

  • NETGEAR engineering connection user name

    I got a Netgear DSL from my ISP modem. I have Netgear genius installed on my PC.

    For some reason the username of my Netgear router is Admin with A capital rather than admin.

    I have no option to change the user name in Netgear genius, so I can't connect to my router.

    How can I fix?

    You are right. This model is a Netgear telco product. For assistance, you will need to contact your ISP.

Maybe you are looking for