Enabling SAML V2 redirection to target application

Hi Gurus,
I have been facing to issues for which I cannot find any relevant information. I have been trying to enable SSO SAML 2 on our SAP Netweaver Platform and I am not able to configure everything.
I followed the step by step implementation described here:
http://wiki.scn.sap.com/wiki/display/Security/Single+Sign-On+with+SAML+2.0+and+ABAP+Systems+Supporting+SAP+Logon+Tickets
The only difference lays in the fact that the provider is an external one and not hosted by NW.
The SAML V2 is activated and the SAML backbone  of my customer redirects to the endpoint URL I gave for a test (our java portal address). So this is more or less fine.
But my business case is different as redirecting to a fixed URL: I want to allow any user to run any BEx queries to be authenticated via SAML 2 backbone and to be redirected to the initially targetted query.
Meaning:
A user is accessing the following URL:
http://<server_name>/irj/servlet/prt/portal/prtroot/pcd!3aportal_content!2fcom.sap.pct!2fplatform_add_ons!2fcom.sap.ip.bi!2fiViews!2fcom.sap.ip.bi.bex?QUERY=<query_id>
The actual situation: the user is getting redirected to the SSO backbone and back to the endpoint I gave meaning:
http://<server_name>/irj/portal
What I would like to have as a behaviour is to:
1- the user request any URL hosted on our Java (it can be BEx query as well as a Web Dynpro application called)
2- he is getting authenticated by the SSO Backbone and redirected to the original URL
I am not an admin and it is hard for me to find the relevant information.
Thanks for helping me!
Cheers,
Cyril.

Hello,
although an answer to my question was provided it doesn't really solve the problem because in order to be able to get the patch that fixes the flaw it requires as described at the bottom of the page of My Oracle Support website that "This site is intended solely for use by authorized Oracle customers, partners, and employees."
I'm not currently part of any of this groups so access to such resources is denied for me. So, i would kindly request from someone to explain to me the purpose of this kind of policy. Oracle Apex and Oracle Database XE are suppossed to be free products. Why are patches of discovered bugs on these products require special privileges to access them ? I say this because now i have to wait for several weeks or even months for the next release of APEX to be able to continue my study.
I would really love to hear a comment on this issue.
Thank you very much.

Similar Messages

  • ERP integrator target applications greyed out

    Hi all,
    I'm configuring the ERP integrator within EMPA (to use with FDM later) but when registering target applications three of the four are greyed out.
    I have tried to delete and refresh them, re-deploy and so on but they stay greyed out.
    Can anyone tell me how to re-activate the target applications so i can select them again?
    Thanks,
    Marc

    Hi All,
    Did any of you had success in configuring FDM with ERPI. I am trying to configure FDM+ERPI for extracting data from Oracle Financials R12 and load it into an EPMA Planning application. When i go onto create a Metadata Rule and click on the Add Dimension button, the next page gives an error stating: There are no more dimensions remaining to be mapped under this application. and the dimension drop down in the target application area remains empty. Any idea why this happens? My Hyperion version is 11.1.1.3. I also downloaded and applied latest available patch of ERPI but no results.
    Thanks & Regards,
    Muhammad Jamshaid Nawaz

  • 30:6519:Target application does not exist.

    Hello,
    I want to delete an existing application, but I'm getting the following error "Target application does not exist" and I can't delete neither deploy.
    Do you know what I can do to resolve this issue?
    Regards,
    Rodrigo

    Hello Tod,
    I'm talking about EPMA, version 11.1.1.3.
    I can see the application in EAS and in the Planning Database.
    In the log I'm get the following errors:
    java.util.MissingResourceException: Can't find bundle for base name HspImgs, locale pt_PT
    java.util.MissingResourceException: Can't find bundle for base name HspCustomImgs, locale pt_PT
    java.lang.Exception: APP_NONE_SELECTED
         at HspLogOn.Handle(Unknown Source)
         at HspLogOn.doPost(Unknown Source)
         at javax.servlet.http.HttpServlet.service(HttpServlet.java:763)
         at javax.servlet.http.HttpServlet.service(HttpServlet.java:856)
    As aditional information this happened after I migrate the application artifcats.
    Your help is much appreciated. I don't know what to do.
    Regards,
    Rodrigo

  • Using SQL Server credentials with Secure Store Target Application for Data Connection in Dashboard Designer

    [Using SharePoint 2013 Enterprise SP1]
    I would like to use SQL Server credentials in a Secure Store Target Application, and
    this page makes it look like it's possible but when I attempt to use the new Target Application ID as authentication for a Data Connection in Dashboard Designer, I get a generic "Unable to access data source" with no error logged in SQL Server
    logs.
    I am able to use a Target Application with AD credentials to access the SQL db without a problem. Suggestions?

    Hi,
    1. Make sure that the credential is set to
    Secure Store Target Application. Navigate to the Central Administration. Click on the
    Application Management. Click on the Manage Service Applications. Click on the
    Secure Store Service Application. Select the application ID and from the ECB menu click on the
    Set Credentials. Enter the Credential Owner, Windows User Name and the
    Windows Password.
    2. Make sure that in the Dashboard Designer “Use a stored account” is selected in the “Authentication” and the proper application ID is mentioned.
    Please refer to the link below for more information:
    http://www.c-sharpcorner.com/Blogs/14527/unable-to-access-data-source-the-secure-store-target-applic.aspx
    Regards,
    Please remember to mark the replies as answers if they help and unmark them if they provide no help. If you have feedback for TechNet Subscriber Support, contact
    [email protected] .
    Rebecca Tu
    TechNet Community Support

  • Enable data protection in the FDM application

    Hi All,
    I just added a custom member in HFM and I would like to enable data protection in the FDM application for the particular custom member. Can anyone tell me how to enable the data protection in the FDM application.
    Regards,
    Sanjeev

    Hi,
    There are options needed to be set for data protection in FDM.
    In Integration settings->Enable data protection, Protection value, Protection operator.
    Set these values and u can use data protection facility.
    You can also go through the forums for more understanding:
    1. Re: Data Protection Switch - FDM
    2. Data Protection
    Hope it helps!
    You can tag it as Answer/Helpful if your Q is answered.
    Regards,
    J

  • Redirecting from one application to another

    Hi All,
    Anybody please tell me how to redirect from one application to another.
    I have two application one is a1 and second is a2 inside orion.
    a1 has a jsp file named a1index.jsp. and a2 has a jsp file named a2index.jsp.
    in a1index.jsp file I am using response.sendRedirect("\a2\a2index.jsp") and redirecting to a2index.jsp. But it doesn't open a2index.jsp file as the syntex is not correct. .
    Anybody please tell me what is the correct syntax to redirect from one application jsp to another jsp...
    please reply soon..
    Thanks in advance.......

    thanks for your reply, but it is giving following
    error.......
    Error parsing JSP page /admin/login.jsp
    Syntax error in source/admin/login.jsp.java:23:
    cannot resolve symbol (JSP page line 2)
    symbol  : variable RequestDispatcher
    location: class /admin/login.jsp
    RequestDispatcher =
    getServletContext().getContext("a2/fabricatoradmin").g
    etRequestDispatcher("\fablogin.jsp");
    ^
    /admin/login.jsp.java:23: cannot resolve symbol (JSP
    page line 2)
    symbol  : method getServletContext ()
    location: class /admin/login.jsp
    RequestDispatcher =
    getServletContext().getContext("a2/fabricatoradmin").g
    etRequestDispatcher("\fablogin.jsp");Thanks
    please reply..Inside a jsp file u can use the application variable instead of using
    getServletContext()
    like application.getContext("/a2").getRequestDispatcher("/fabricatoradmin/fablogin.jsp");
    regards
    Pravin

  • Excel documents attempting to use non-existing Secure Store target application for unattended account

    Hey,
    I have been brought in to take a look at a few errors experienced on a SharePoint 2013 farm that will be used for BI functionality. One of the errors is the following:
    This happens when I attempt to refresh a Excel document that is using an unattended account. The application that it attempts to access (named in the error) does not exist in the Secure Store Service. I have checked the Excel Service Global Settings
    and the Target Application ID of the Unattended Service Account does not match what is given in the error (but matches a target application id that exists).
    Is there anywhere that you can override the global settings of the excel service? Is there something else that might be wrong?
    Any help is appreciated.
    Regards
    Knut

    Hi Knut,
    Thank you for your sharing! It will be beneficial to others in this forum who meet the same issue in the future.
    Best Regards,
    Wendy
    Forum Support
    Please remember to mark the replies as answers if they help and unmark them if they provide no help. If you have feedback for TechNet Subscriber Support, contact
    [email protected]
    Wendy Li
    TechNet Community Support

  • Login Redirection through SYSTEM application

    Hi,
    I'm using the standard SYSTEM application to perform the Login redirection. The redirection works fine in normal cases. However I face problems when I pass some parameters in my original URL.               
    Consider my app URL is: http://testsystem/sap/bc/bsp/sap/test/default.htm?bookid=1000                                               During login this gets redirected to url /sap/public/bsp/sap/system/login.htm?sap-url=<%=PATHTRANS%>            
    The login happens here, but after that, the parameter "bookid" got removed from the original URL.                                         
    Why does this happen?
    Is this the standard system behaviour? Or am I missing something?                  
    How else can I pass parameters to the URL while still retaining the login redirection through SYSTEM application?
    Regards,
    Pradeep

    Hi,
    I'm successful passing parameters with the code mentioned in /people/eddy.declercq/blog/2005/11/15/enemy-of-the-state
    Eddy

  • Captivate 7: where is the "Enable SWF for conversion to iPhone application" publish option

    I'm part of a team of 20 people who are currently using Captivate 5.5 and evaluating updating to Captivate 7 or finding a new tool.
    A critical part of what we produce are iPad conversions of our Captivate/Flash software demonstrations.  We do the conversion using the Adobe Developer Tool in the AIR SDK to convert our SWF files to iPad applications.
    Captivate 7 is missing an option that we have in Captivate 5.5, "Enable SWF for conversion to iPhone application".  Without this option we cannot convert to iPad applications using AOT mode but are forced to use Interpreter mode.  Interpreter mode results in unacceptable performance for anything with motion such as segments with Captivate Full Motion Recording clips.
    Is there a workaround that will allow us to compile in AOT mode?  If not we will most likely not upgrade to Captivate 7 but will continue to use Captivate 5.5 and search for a different tool.
    --Hal

    Hi there,
    Please see below for the answers
    Even as of Captivate 7, there are too many restrictions on object types that can be converted. One example that comes to mind is rollover captions.  We use these extensively and they don't work with Captivate 7 HTML5 output
    As you figured out, Rollover objects are not supported in HTML5 output. The list of non-supported objects are mentioned in the link http://helpx.adobe.com/captivate/using/publish-projects-html5-files.html#unsupported_objec ts_in_html5_output
    We need a solution that is easy to distribute and load onto an iPad.
    You can either use an LMS (e.g.: Scorm CLOUD) or can use the "Adobe Captivate App Packager 7" along with PhoneGap to achieve this. This application helps you package the courses as native apps using the Adobe Phone Gap Service. Please see the link to know more about Adobe Captivate App Packager. http://helpx.adobe.com/captivate/using/captivate-app-packager.html
    We need to fill the entire screen with our demo, eliminating browser or other application elements entirely
    You can achieve it by publishing the course through "Adobe Captivate App Packager 7". Please don't select the 'Scalable HTML output' option during Captivate publish as the HTML5 output may not work well on Ipads.
    We need a solution that works when an iPad is offline such as wandering around a show floor.
    You meant, you need an offline solution to track 'Reporting or Completion'? If that is not the case then again "Adobe Captivate App Packager 7" solves the issue.
    We prefer a solution that doesn't require additional software to be purchased for each iPad.
    To publish an iOS app through Adobe App packager and Phone gap, you need to get the "Certificate password and PhoneGap'
    Thanks,
    Nimmy Sukumaran.

  • Target Application Alias of firebox-bin is overwritten

    I copied some speakable comments of my friend in the firefox-bin, and accidently it seems to have replaced the Target Application Alias of the firefox-bin for an empty (visible) text file with the same name. Does anyone know how or where to fix this? The speakable items of firefox don't seem to work anymore.

    Hello, do a Get info on Target Application Alias, if Kind is really an Alias then click Select New Original & choose Firefox.
    If not an Alias I imagine you could highlight Firefox in Applications, make an Alias, move & rename that Alias.

  • Sharing target application between two external data connections

    If I want to create two BDC connections to two separate external systems (let's say one is for HR system and one for IT admin system), can I use the same Target Application in the secure store service section if both of them use the same authentication? 
    Let's say both external systems allow access for 'admin1' user.  Then, when setting up the external data connection I use 'impersonate windows identity' and create a target application in secure store service to map a set of users to that 'admin1' account. 
    When I create these two external data connections can I specify the exact same 'target application' or should I create two separate ones, one for each external system?
    thanks,

    Hiya,
    If you want to use impersonate, you do not need to use Secure store. Impersonation is granting the service account delegation permissions. This is part of the Kerberos authentication protocol, which needs to be configured separately.
    All secure store does, is to store a set of credentials encrypted. These stored credentials can be used wherever, as long as they are valid.

  • How to enable Accessibility Mode of OEM 1g Application server console

    Hi,
    Please guide me to deploy the war file in the Oracle EBS release 12. For that i need to enable Accessibility Mode of OEM 1g Application server console.This is in ref. to 392218.1 note.
    Thanks...

    Hi,
    You need to configure the AS10g Control with R12 by following the steps in this document (not enabled by default).
    Note: 603716.1 - Using AS10g AS Control with eBusiness Suite Rel 12
    https://metalink2.oracle.com/metalink/plsql/ml2_documents.showDocument?p_database_id=NOT&p_id=603716.1
    Regards,
    Hussein

  • Create a new target application - Secure Store Service administration issues

    Hi,
    I am trying to create new target application, when I go to Secure Store Service in Centra admin I have:
    Cannot complete this action as the Secure Store Shared Service is not responding. Please contact your administrator.
    I have used this few days ago and avarything else is working fine on the server, and I have applications created with it running fine.
    Any help is appreciated.
    cheers
    Valko

    I know this has been open and possibly answered for a while but I thought I would mention what I ran into since I haven't found it posted anywhere.
    It was confusing because once I clicked the Ssecure Store Service I recieved the message that is mentioned here in this thread. With that, you can't make any changes. After trying numerous things I simply highlighted the Secure Store Service (the Applicaiont
    not the Application Proxy) and selected Properties from the Operations section of the ribbon at the top of the page. This opened the properties page where I was able to change the Application Pool that the service was using.
    In my case it was using the Sharepoint Web Services Default and changing it to the SecurityTokenServiceApplicationPool, which I had already configured to run on a named account with adequate priveleges (although it should run find on Local or Network
    Service if they are configured correctly in IIS) corrected the issue.
    Hope this helps someone...
    Cheers

  • Using SAML secured webservice in ADF Application

    I am looking for some tutorial/docs to use SAML secured webservice in ADF application. In my adf application, I am using the webservices using WebProxy and WebServiceDataControls.
    Any pointers in this direction will be helpful.
    Thanks,
    Rajdeep

    Take a look at the following blog posts - which provides some information regarding the SAML security in ADF
    http://biemond.blogspot.com/2009/05/sso-with-saml-adf-security.html
    http://biemond.blogspot.com/2009/05/sso-with-weblogic-103-and-saml.html
    Thanks,
    Navaneeth

  • The App store, FaceTime, iTunes, Safari and Camera are all missing from my iPad.  Restrictions are not enabled and when they are those applications are grayed out.  I have tried everything but restoring my iPad to its orginal condition. What do I do?

    The App store, FaceTime, iTunes, Safari and Camera are all missing from my iPad.  Restrictions are not enabled and when they are those applications are grayed out.  I have tried everything but restoring my iPad to its orginal condition. What do I do?

    todaywillbegreat wrote:
    '''  I have tried everything but restoring my iPad to its orginal condition. What do I do?
    The Basic Troubleshooting Steps are:
    Restart... Reset... Restore from Backup...  Restore as New...
    Restart / Reset
    http://support.apple.com/kb/ht1430
    Backing up, Updating and Restoring
    http://support.apple.com/kb/HT1414
    If you try all these steps and you still have issues...
    Then a Visit to an Apple Store or AASP (Authorized Apple Service Provider) is the Next Step...
    Be sure to make an appointment first...

Maybe you are looking for

  • Problem with the E1000

    My husbands laptops hard drive crashed and burned.  Some of the memory was saved and loaded on the new hard drive one good thing is that I don't have to reload the wireless into the system.  Okay that is fine but the problem it ask for the code key t

  • JDBC SqlServer connection problem

    Hi, I'm trying to connect to a local Sql Server database. I started out connecting to a database on another computer on the network by using the following code: //Set up connection to database String driverName = "com.microsoft.jdbc.sqlserver.SQLServ

  • How to build a fieldcatalog in webdynpro alv

    Hi friends, how to build a fieldcatalog in webdynpro alv ? can any give me with example Thnx Kumar Srini

  • How to make a field non-Editable in Web UI

    Hello Experts, I am new to Web UI CRM 7.2. Could anyone pls guide me in making a field non-editable on Web UI.I have the field in one of the custom assignment block. Could you pls guide me with some sample code how to achieve this ? Thanks in advance

  • VPD and connection for XSQL

    We want to use Virtual Private Databases and the benefit of the connection pooling used in XSQL. For example, each connection is XMLBOOOK/XMLBOOK. My understanding of VPD is that it "tracks" the user's connection session id and applies the "where" cl