Fusion App installation - Registering OAM policy domain ...

Hi all,
I'm trying to perform Fusion Applications installation (Linux 64, Middleware 11.1.1.5.0, WLS 10.3.6) in a single host environment, without any load balancer..
The installation fails in "Registering OAM policy domain" phase with error "User does not belong to the group that is authorized to perform registration."
I'm able to login as oamadmin to http://vfusion01.mydomain.com:7001/oamconsole with admin's privileges.
Adding oamadmin into OAMAdministrators and OIMAdministrators groups in LDAP didn't help.
Any idea how to continue?
Thanks for support
Daniel F
[edit]OAM Validation/Authorization and Authentication are successful in OAM Test Tool:
[3/2/12 12:21 PM][request][validate] yes
[3/2/12 12:21 PM][response] Authentication scheme : OAMAdminConsoleScheme, level : 2
[3/2/12 12:21 PM][response] Redirect URL : https://vfusion01.mydomain.com:4443/oam/server/
[3/2/12 12:21 PM][response] Credentials expected : 0x4 (form)
[3/2/12 12:21 PM][request][authenticate] yes
[3/2/12 12:21 PM][response] User DN : cn=oamadmin,cn=users,dc=mydomain,dc=com
[3/2/12 12:21 PM][response] SessionID : 29b10d11-ab81-4446-9e86-880db6e5790c
[3/2/12 12:21 PM][response][action] OAM_IMPERSONATOR_USER :
[3/2/12 12:21 PM][request][authorize] yes
[3/2/12 12:21 PM][response][action] OAM_IMPERSONATOR_USER :
[3/2/12 12:21 PM][response][action] OAM_REMOTE_USER : oamadmin
[3/2/12 12:21 PM][response][action] OAM_IDENTITY_DOMAIN : OIMIDStore
[edit]
====================
[echo] Registering OAM policy domain ...
Registering policy file /fusion/faprov/provisioning/provisioning-plan/bootstrap_oam.conf for policy domain provisioning ...
[echoNested] Registering policy file /fusion/faprov/provisioning/provisioning-plan/bootstrap_oam.conf for policy domain provisioning ...
[echo] mode=CREATE
[echo] app_domain=provisioning
[echo] oam_aaa_host=vfusion01.mydomain.com
[echo] oam_aaa_port=5575
[echo] uris_file=/fusion/faprov/provisioning/provisioning-plan/bootstrap_oam.conf
[echo] hostname_variations=vfusion01.mydomain.com:12613,vfusion01.mydomain.com:12614
[echo] oam_admin_server=http://vfusion01.mydomain.com:7001
[echo] oam_admin_username=oamadmin
[echo] -usei18nlogin
[echo] default_authn_scheme=FAAuthScheme
[echo] oam_cache_header=
[echo] logouturi=/oamsso/logout.html
[echo] web_domain=OraFusionApp
[echo] oam_aaa_mode=simple
[echo] log_level=ALL
[echo] max_oam_connections=10
[echo] primary_oam_servers=wls_oam1:10
[echo] oam_ip_validation=0
[echo] oam_idle_session_timeout=900
[echo] oam_version=11
[echo] cookie_domain=mydomain.com
[echo] app_agent_password and oam_admin_password passed in via STDIN
Mar 1, 2012 6:39:01 PM oracle.security.am.engines.rreg.client.oamcfgwrapper.OAMCfgRREGWrapperImpl handleConfig
INFO: Into RREG Wrapper implementation
Enter password: Enter password: Mar 1, 2012 6:39:01 PM oracle.security.am.engines.rreg.client.util.RegClientFusionCfgURIsFileHandler readProtAndPubUrisFromFileAndSet
INFO: Success: URI:[provisioningBootstrap*] is added.
Mar 1, 2012 6:39:01 PM oracle.security.am.engines.rreg.client.util.RegClientFusionCfgURIsFileHandler readProtAndPubUrisFromFileAndSet
INFO: Success: URI:[provisioningBootstrap/.../*] is added.
Your registration request is being been sent to the Admin server at: http://vfusion01.mydomain.com:7001
Mar 1, 2012 6:39:05 PM oracle.security.am.engines.rreg.client.RegController processOamCfgRegistration
SEVERE: Server side error occurred. Specific error messages are:User does not belong to the group that is authorized to perform registration. Registration failed. Try again after verifying the users group.
Mar 1, 2012 6:39:05 PM oracle.security.oam.oamcfg.OAMCfgTool main
WARNING: OAMCFG-60083: OAM Configuration did not complete successfully. Refer log for details
Mar 1, 2012 6:39:05 PM oracle.security.oam.oamcfg.OAMCfgTool main
WARNING: Stack trace::
oracle.security.am.engines.rreg.client.RegController:processOamCfgRegistration() in file RegController.java:771
oracle.security.am.engines.rreg.client.oamcfgwrapper.OAMCfgRREGWrapperImpl:handleConfig() in file OAMCfgRREGWrapperImpl.java:359
oracle.security.oam.oamcfg.OAMCfgTool:main()[2012-03-01T18:39:05.530+01:00] [runProvisioning-install] [NOTIFICATION] [] [runProvisioning-install] [tid: 12] [ecid: 0000JNF5GUy5i^O6yj7i6G1FJuCA000003,0]
[logStatus] STATE=BUILD_ERROR!TIMESTAMP=2012-03-01 18:39:05 CET!TARGET=register-policy-domain!CATEGORY=BUILD_ERROR!DOMAIN=CommonDomain!HOSTNAME=vfusion01.mydomain.com!PRODUCTFAMILY=webgate!PRODUCT=WebGate!TASK=execSecure!TASKID=webgate.WebGate.BUILD_ERROR.register-policy-domain.execSecure!MESSAGE=Process "/fusion/fmw/jrockit-jdk1.6.0_29-R28.2.2-4.1.0/bin/java -jar /fusion/fmw/apps/webtier_mwhome/oracle_common/modules/oracle.oamprovider_11.1.1/oamcfgtool.jar mode=CREATE app_domain=provisioning oam_aaa_host=vfusion01.mydomain.com oam_aaa_port=5575 uris_file=/fusion/faprov/provisioning/provisioning-plan/bootstrap_oam.conf hostname_variations=vfusion01.mydomain.com:12613,vfusion01.mydomain.com:12614 oam_admin_server=http://vfusion01.mydomain.com:7001 oam_admin_username=oamadmin -usei18nlogin default_authn_scheme=FAAuthScheme oam_cache_header= logouturi=/oamsso/logout.html web_domain=OraFusionApp oam_aaa_mode=simple log_level=ALL max_oam_connections=10 primary_oam_servers=wls_oam1:10 oam_ip_validation=0 oam_idle_session_timeout=900 oam_version=11 cookie_domain=mydomain.com" exited with non-zero exit code "1". Input Stream before decrypting for process execution: "j8p+RGsjhPvGQxLt55GQFw==j8p+RGsjhPvGQxLt55GQFw==". Environment variables: "".!DETAIL=Process "/fusion/fmw/jrockit-jdk1.6.0_29-R28.2.2-4.1.0/bin/java -jar /fusion/fmw/apps/webtier_mwhome/oracle_common/modules/oracle.oamprovider_11.1.1/oamcfgtool.jar mode=CREATE app_domain=provisioning oam_aaa_host=vfusion01.mydomain.com oam_aaa_port=5575 uris_file=/fusion/faprov/provisioning/provisioning-plan/bootstrap_oam.conf hostname_variations=vfusion01.mydomain.com:12613,vfusion01.mydomain.com:12614 oam_admin_server=http://vfusion01.mydomain.com:7001 oam_admin_username=oamadmin -usei18nlogin default_authn_scheme=FAAuthScheme oam_cache_header= logouturi=/oamsso/logout.html web_domain=OraFusionApp oam_aaa_mode=simple log_level=ALL max_oam_connections=10 primary_oam_servers=wls_oam1:10 oam_ip_validation=0 oam_idle_session_timeout=900 oam_version=11 cookie_domain=mydomain.com" exited with non-zero exit code "1". Input Stream before decrypting for process execution: "j8p+RGsjhPvGQxLt55GQFw==j8p+RGsjhPvGQxLt55GQFw==". Environment variables: "".!BUILDFILE=/fusion/faprov/provisioning/provisioning-build/webgate-build.xml!LINENUMBER=512![2012-03-01T18:39:05.673+01:00] [runProvisioning-install] [ERROR] [FAPROV-00298] [runProvisioning-install] [tid: 12] [ecid: 0000JNF5GUy5i^O6yj7i6G1FJuCA000003,0] An Error Occured: [[Process "/fusion/fmw/jrockit-jdk1.6.0_29-R28.2.2-4.1.0/bin/java -jar /fusion/fmw/apps/webtier_mwhome/oracle_common/modules/oracle.oamprovider_11.1.1/oamcfgtool.jar mode=CREATE app_domain=provisioning oam_aaa_host=vfusion01.mydomain.com oam_aaa_port=5575 uris_file=/fusion/faprov/provisioning/provisioning-plan/bootstrap_oam.conf hostname_variations=vfusion01.mydomain.com:12613,vfusion01.mydomain.com:12614 oam_admin_server=http://vfusion01.mydomain.com:7001 oam_admin_username=oamadmin -usei18nlogin default_authn_scheme=FAAuthScheme oam_cache_header=  logouturi=/oamsso/logout.html web_domain=OraFusionApp oam_aaa_mode=simple log_level=ALL max_oam_connections=10 primary_oam_servers=wls_oam1:10 oam_ip_validation=0 oam_idle_session_timeout=900 oam_version=11 cookie_domain=mydomain.com" exited with non-zero exit code "1". Input Stream before decrypting for process execution: "j8p+RGsjhPvGQxLt55GQFw==j8p+RGsjhPvGQxLt55GQFw==". Environment variables: "".        at oracle.apps.fnd.provisioning.ant.taskdefs.SecureExec.executeTask(SecureExec.java:381)        at oracle.apps.fnd.provisioning.ant.taskdefs.BaseProvisioningTask.execute(BaseProvisioningTask.java:102)        at org.apache.tools.ant.UnknownElement.execute(UnknownElement.java:288)        at sun.reflect.GeneratedMethodAccessor4.invoke(Unknown Source)        at sun.reflect.DelegatingMethodAccessorImpl.invoke(DelegatingMethodAccessorImpl.java:25)        at java.lang.reflect.Method.invoke(Method.java:597)        at org.apache.tools.ant.dispatch.DispatchUtils.execute(DispatchUtils.java:105)        at org.apache.tools.ant.Task.perform(Task.java:348)        at org.apache.tools.ant.taskdefs.Sequential.execute(Sequential.java:62)        at oracle.apps.fnd.provisioning.ant.taskdefs.util.SynchronizedTask.executeInternal(SynchronizedTask.java:286)        at oracle.apps.fnd.provisioning.ant.taskdefs.util.SynchronizedTask.executeTask(SynchronizedTask.java:318)        at oracle.apps.fnd.provisioning.ant.taskdefs.BaseProvisioningTask.execute(BaseProvisioningTask.java:102)        at org.apache.tools.ant.UnknownElement.execute(UnknownElement.java:288)        at sun.reflect.GeneratedMethodAccessor4.invoke(Unknown Source)        at sun.reflect.DelegatingMethodAccessorImpl.invoke(DelegatingMethodAccessorImpl.java:25)        at java.lang.reflect.Method.invoke(Method.java:597)        at org.apache.tools.ant.dispatch.DispatchUtils.execute(DispatchUtils.java:105)        at org.apache.tools.ant.Task.perform(Task.java:348)        at org.apache.tools.ant.taskdefs.Sequential.execute(Sequential.java:62)        at org.apache.tools.ant.UnknownElement.execute(UnknownElement.java:288)        at sun.reflect.GeneratedMethodAccessor4.invoke(Unknown Source)        at sun.reflect.DelegatingMethodAccessorImpl.invoke(DelegatingMethodAccessorImpl.java:25)        at java.lang.reflect.Method.invoke(Method.java:597)        at org.apache.tools.ant.dispatch.DispatchUtils.execute(DispatchUtils.java:105)        at org.apache.tools.ant.Task.perform(Task.java:348)        at org.apache.tools.ant.taskdefs.MacroInstance.execute(MacroInstance.java:391)        at net.sf.antcontrib.logic.ForDelegate.doSequentialIteration(ForDelegate.java:228)        at net.sf.antcontrib.logic.ForDelegate.doTheTasks(ForDelegate.java:281)        at net.sf.antcontrib.logic.ForDelegate.execute(ForDelegate.java:214)        at net.sf.antcontrib.logic.For.execute(For.java:167)        at org.apache.tools.ant.UnknownElement.execute(UnknownElement.java:288)        at sun.reflect.GeneratedMethodAccessor4.invoke(Unknown Source)        at sun.reflect.DelegatingMethodAccessorImpl.invoke(DelegatingMethodAccessorImpl.java:25)        at java.lang.reflect.Method.invoke(Method.java:597)        at org.apache.tools.ant.dispatch.DispatchUtils.execute(DispatchUtils.java:105)        at org.apache.tools.ant.Task.perform(Task.java:348)        at org.apache.tools.ant.Target.execute(Target.java:357)        at org.apache.tools.ant.Target.performTasks(Target.java:385)        at org.apache.tools.ant.Project.executeSortedTargets(Project.java:1329)        at org.apache.tools.ant.helper.SingleCheckExecutor.executeTargets(SingleCheckExecutor.java:40)        at org.apache.tools.ant.taskdefs.Ant.execute(Ant.java:416)        at org.apache.tools.ant.taskdefs.CallTarget.execute(CallTarget.java:106)        at org.apache.tools.ant.UnknownElement.execute(UnknownElement.java:288)
        at sun.reflect.GeneratedMethodAccessor4.invoke(Unknown Source)                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                       

First of all WLS 10.3.6 is not certified for FA and OAM 11.1.1.5. Second oamadmin must belong to the OAMAdministrators group and registered as a system administrator for the User Identity Store.
See the IDM EDG (FA edition) for more details. (http://docs.oracle.com/cd/E25054_01/fusionapps.1111/e21032/toc.htm)
HTH,
--olaf                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   

Similar Messages

  • Overlapping OAM policy domains

    The OAM documentation addresses overlapping policies within a single policy domain, but I haven't been able to find anything about overlaps between different domains.
    I have a policy domain for a host that protects everything under the root "/". However, I want the "access" virtual directory to be handled the same as the access directory on all of the other hosts, so I added the access resource to a domain that defines the policy for all of the access directories.
    The result is an overlap-- the access directory for that host is protected in the specific "access" domain, and it's also protected under the domain that protects everything under the root for that host.
    Is this a problem for OAM? Does OAM apply the most-specific policy domain for a resource, as hoped in this case? OAM allows me to explicitly order policies within a domain, but I don't see any way to order domains themselves.
    Thanks,
    Matthew

    For policy domain mapping, the basic algorithm OAM follows is to use the host and path elements of the URI to 'map' into the 'most specifically relevant' policy domain.
    As far as the path is concerned, OAM tries to match the path beginning with the most strict pattern and then working backwards to achieve a match.
    For example, consider the following configuration:
    Policy Domain A protects MY_HOST/access/bin
    Policy Domain B protects MY_HOST/access
    If a request for MY_HOST/access/bin/foo?param=1 comes in...
    OAM looks for a policy domain protecting a resource MY_HOST/access/bin/foo and can't find one.
    Next, OAM looks for a policy domain protecting a resource MY_HOST/access/bin and finds it and processing continues from there.
    So, in the case you illustrate, /access is simply a 'more strict' pattern than / which will catch all requests that match that pattern.
    As you noted, the evaluation of 'Policies (exceptions to the default rules)' is managed by explicit order.
    It is also important to note, in this discussion, that OAM does not tolerate ambiguity on the HOST element of a protected resource. Configuring OAM to map the same hostname variation to more than one host identifier will produce unpredictable results. Validation in the admin application is in place to help avoid this.
    Hope that helps.
    Cheers,
    Mark

  • Can install fusion apps in single computer?

    I want to install fusion apps in my pc to learn. Reading the installation guide, I found it need IAM, and required IAM in a separated computer. That means I need two PCs at least. Can I install in one or skip IAM?

    I don't believe that 32 GB is going to be enough to get a complete Fusion install to work (but I have personally never attempted to do that). Are you trying to learn how to build extensions/customizations, or are you more looking at the usage/implementation of the Fusion Apps system? We customize/develop on much smaller machines every day, running JDeveloper, WLS, a database, ... but they only run the pieces of the techstack and applications that we need for a given task, and the Fusion Apps installer and install process just aren't designed to cater for a very selective deployment of components.
    Regards,
    Oliver
    Fusion Apps Developer Relations
    https://blogs.oracle.com/fadevrel

  • Pop up warning when creating policy domain in OAM 10g

    Has anyone seen below pop up warning when creating a policy domain in OAM 10g Policy manager?
    Warning:
    This policy domain controls the access to the URI you are currently accessing
    /access/oblix/apps/policyservcenter/bin/policyservcenter.cgi
    Are you sure you want to commit these changes?

    Hi,
    Does Note 842378.1 look like a match for you? Maybe the obcompounddata attribute is missing for some odd reason.
    Regards,
    Colin

  • Sharepoint Provider hosted app installation error - There is no Workflow App Part registered

    Hello,
    I am getting below error when i run my share point app(Provider hosted) from visual studio 2013.It has a list workflow.
    Error 1
    Error occurred in deployment step 'Install app for SharePoint': There is no Workflow App Part registered.
    0 0
    SharePointApp
    Thanks
    Sobers

    Hi,
    According to the error message, your environment might not have the deployment group for the workflow registered.
    You can register the deployment group using PowerShell with the code provided by Andrew in the link below and do the test again:
    http://www.andrewconnell.com/blog/Workflow-Improvements-Changes-SP2013-March-PU-and-RTM-Developer-Tools#XgQAmUFIZm8a5cjm.99
    Feel free to reply with the test result if the issue still exists.
    Best regards
    Patrick Liang
    TechNet Community Support

  • Policy Domain Root error during Policy Manager installation

    I am installing Policy manager for the first time and I am getting error at Policy domain root level.
    If I specify Policy Domain Root as / it gives me this error
    Unable to modify the entry with DN obapp=PSC,ou=Oblix,dc=SUPPLIER,DC=GLOBAL in the directory server - Object class violation in ModifyDBEntry_ADSI()
    The DN obapp=PSC,ou=Oblix,dc=SUPPLIER,DC=GLOBAL exists in the directory.
    My directory is Windows 2003 standard edition SP1 active directory. I am using Oracle access manager 10.1.4
    user and policy directory is the same directory supplier.global.
    Forest and domain functional level is Windows 2003
    My person object class is: user
    i have already installed webpass and identity server on same machine.
    I have removed and tried to reinstall the policy manager on the same machine and the same error.
    My identity server admin console is showing three directories:
    AccessManager_setup_user_profile
    AccessServer_default_user_profile
    default-IdentityServer_1_6022
    all of the directories have these settings dynamic auxiliary is yes and directory type is microsoft active directory (using adsi) without ldap for authentication checked.
    I am getting these errors in my access logs looks like the path is wrong and the files are missing but not sure from which part of setup its taking this.
    2007/02/06@19:22:35.265000     3040     1848     INIT     ERROR     0x000003B6     base\oblistrwutil.cpp:145     "Could not read file"     filename^C:\Program Files\NetPoint\WebComponent\access/oblix/lang/en-us/comm_servermsg.xml     
    2007/02/06@19:22:35.375000     3040     1848     INIT     ERROR     0x000003B6     base\oblistrwutil.cpp:145     "Could not read file"     filename^C:\Program Files\NetPoint\WebComponent\access/oblix/lang/en-us/sysmgmtmsg.xml     
    2007/02/06@19:22:36.015000     3040     1848     INIT     ERROR     0x000003B6     base\oblistrwutil.cpp:145     "Could not read file"     filename^C:\Program Files\NetPoint\WebComponent\access/oblix/lang/en-us/policysetupldifs_msg.xml     
    2007/02/06@19:22:37.843000     3040     1848     DB_RUNTIME     WARNING     0x00000007     \Oblix\coreid\np_common\db\ldap\util\ldap_util.cpp:1131     "Requested modify or add operation resulted in schema violation"     function^ModifyDBEntry()     dn^obapp=PSC,ou=Oblix,dc=SUPPLIER,DC=GLOBAL     
    2007/02/06@19:22:37.843000     3040     1848     DB_RUNTIME     WARNING     0x00000504     \Oblix\coreid\np_common\db\ldap\util\ldap_util.cpp:1217     "Exception during DB runtime code"     function^ModifyDBEntry()     dn^obapp=PSC,ou=Oblix,dc=SUPPLIER,DC=GLOBAL     
    2007/02/06@19:22:37.843000     3040     1848     DB_RUNTIME     WARNING     0x00000504     \Oblix\coreid\np_common\db\ldap\util\ldap_util3.cpp:837     "Exception during DB runtime code"     function^ModifyDBEntryWithDupCheck
    Thanks for helping me out.
    Message was edited by:
    user557359

    Hi,
    Go to Policy domain root for Activer directory
    Steps on how to resolve this are outlined there.
    Rgds,
    Boland

  • How to protect an application running on Apache Tomcat app server with OAM 11gR2

    Gurus,
    We have an Apache Tomcat based application named "ABCD" here at client site that we want OAM 11gR2 PS1 to integrate with for SSO purposes. I have successfully configured OHS to reverse proxy requests to Apache Tomcat server whenever somebody tries to access the application URL but still, I am getting the application login page once I have successfully authenticated on OAM SSO login page. The Tomcat based application is authenticating users against a "UserDatabase realm".
    I know in terms of weblogic application, there is an OAM identity asserter provider which then populates the User Principal for the java environment with the authenticated OAM user. But there is no such OAM identity provider for Tomcat.
    So my question is, is there an provider (or Tomcat equivalent) which will entrust authentication to a header, that could be used to populate the Java User Principal from the OAM_REMOTE_USER header? Is the weblogic equivalent of authentication providers present in tomcat as well? Are those called valves?
    Please advise to the earliest.
    Thanks !!

    Aakash,
    I did follow the 4 steps that you mentioned to me. Out of the 4 that you had mentioned, I already had the webgate in place on OHS server and I was already passing the remote_user http header in oam policy as action.
    As part of Step #2: Install mod_jk plugin on OHS server that you mentioned
    1.) I downloaded the tomcat connector - tomcat-connectors-1.2.37-src
    2.) I had to run ./configure,make, make install on my OHS server which runs on RHEL 6. It created the mod_jk.so file. I pasted it in the needed folder.
    3.) I then created the httpd.conf file and workers.properties file as said in the connector docs.
    4.) Restarted OHS.
    As part of Step #3: Configure tomcat's ajp connector that you mentioned and I went through all the links pasted below but didn't find actually what needs to be in place to configure tomcat's ajp connector. I do see in the server.xml of tomcat app server that the ajp 1.3 protocol is supported:
    http://tomcat.apache.org/tomcat-4.0-doc/config/ajp.html
    http://tomcat.apache.org/tomcat-3.3-doc/mod_jk-howto.html#s8
    http://tomcat.apache.org/tomcat-7.0-doc/config/ajp.html
    http://www.mulesoft.com/understanding-tomcat-connectors
    <!-- A "Connector" represents an endpoint by which requests are received
             and responses are returned. Documentation at :
             Java HTTP Connector: /docs/config/http.html (blocking & non-blocking)
             Java AJP  Connector: /docs/config/ajp.html
             APR (HTTP/AJP) Connector: /docs/apr.html
             Define a non-SSL HTTP/1.1 Connector on port 8080
        -->
        <Connector port="8080" protocol="HTTP/1.1"
                   connectionTimeout="20000"
                   redirectPort="8443" />
    <!-- Define an AJP 1.3 Connector on port 8009 -->
        <Connector port="8009" protocol="AJP/1.3" redirectPort="8443" />
    Do we need to disable the HTTP protocol in Tomcat and keep only AJP connector enabled? If yes, how to do that?
    I am trying to connect to the application from OHS server like so I am using the http protocal right? How should I use the ajp protocol to connect to tomcat application? 
    http://ohs-host:ohs-port/abcd
    Thanks !!!!!

  • Windows Server 2008 (TS) and Lync Web App installation failure

    Hey folks,
    I've run into a little big problem due the Lync Web App installation via mstsc on a stand alone Terminal Server 2008 SP2 64 Bit. When I tried to install the Lync Web App Plugin via
    mstsc and standard user I get the message:
    "The system administrator has
    set up a policy that the installation
    prevents"
    Till that it's just fine.
    The next thing I did is to disable the UAC and DEP, but same problem as above. I also tried to extract the install EXE for the MSI packages to allow the installation. But did not work.
    After I searched the internet for an answer relating to this problem I've had to create or change a RegEdit entry. So I switched to the registry to:
    HKEY_Local_Machine\Software\Policies\Microsoft\Windows\Installer
    and created a DWORD entry DisableMSI and set it to 0. Then I tried the installation of Lync Web App Plugin via
    mstsc and standard user again and this message appeared:
    "The installer has encountered an unexpected error installing this package. This may indicate a problem with this package. The error code is 2755"
    Now the curious thing is, that when I am logged on locally, the standard user is able to install the Lync Web App Plugin. And it works fine. After the installation is complete I can switch to mstsc again and it works.
    The only thing what doesn't work is to install Lync Web App Plugin via mstsc into the user profile.
    Any suggestions?

    Before you install the application, change your user mode to installation mode.
    You can run the following command with Prompt Command:
    Change user /install
    After the application is installed, change back to execution mode, you can do so by running the following command:
    Change User /Execute
    Lisa Zheng
    TechNet Community Support

  • ATS with Oracle Fusion Apps

    Hello,
    Has anyone used OATS on Oracle Fusion Apps and what has been your experience?
    Regards,
    Sathish S

    Hi,
    You can find the step by step guide to install Fusion Applications 11.1.6 on my blog at following location.
    http://www.oratraining.com/blog/2013/03/oracle-fusion-applications-installation-step-by-step-guide-11-1-6/
    Thanks
    Tushar

  • MBAM 2.5 Web App Installation Failed

    MBAM 2.5 with SQL 2014 all-in-one Windows 2012 R2 Hyper-V VM.
    Compliance & Recovery DB installation done.
    When try to install Web App, I'm using the same domain account when create above 2 DB (read-write permission), but the installation failed with below error.
    Unexpected Configurator error.
    Description:
    Exception thrown from feature provider.
    Exception:
    System.DirectoryServices.DirectoryServicesCOMException (0x8007052E): The user name or password is incorrect.
       at System.DirectoryServices.DirectoryEntry.Bind(Boolean throwIfFail)
       at System.DirectoryServices.DirectoryEntry.Bind()
       at System.DirectoryServices.DirectoryEntry.get_AdsObject()
       at System.DirectoryServices.DirectorySearcher.FindAll(Boolean findMoreThanOne)
       at Microsoft.Mbam.Setup.Common.ActiveDirectory.DomainSearcher.FindAll()
       at Microsoft.Mbam.Setup.Common.WebAdministration.SpnInfo.LoadSpnInfo(String spn, IDomainSearcher searcher, IActiveDirectoryHelper adHelper)
       at Microsoft.Mbam.Setup.Common.WebAdministration.SpnInstaller.CheckSpnReadyStatus()
       at Microsoft.Mbam.Setup.Common.ActionItemQueue.Run()
       at Microsoft.Mbam.Setup.WebAdministration.WebProviderBase`1.CheckPrereqs(IProgress`1 progress, CancellationToken cancellationToken, T configuration)
       at Microsoft.Mbam.Setup.Common.FeatureProviderBase`1.<>c__DisplayClass34`1.<InvokeAsync>b__33()
       at System.Threading.Tasks.Task`1.InnerInvoke()
       at System.Threading.Tasks.Task.Execute()
    --- End of stack trace from previous location where exception was thrown ---
       at System.Runtime.CompilerServices.TaskAwaiter.ThrowForNonSuccess(Task task)
       at System.Runtime.CompilerServices.TaskAwaiter.HandleNonSuccessAndDebuggerNotification(Task task)
       at Microsoft.Mbam.Setup.Common.FeatureProviderBase`1.<InvokeAsync>d__36`1.MoveNext()
    Jason

    found my problem. a typo when I create SQL DB, I named it "Complianc", but I specify it as "Compliance" in web app installation wizard. the error logs miss leading me keep troubleshooting the kerberos 
    thanks all for the support.
    Jason

  • BI Apps Installation

    Hi All,
    I want to install BI Apps Installation, on Edelivery, I found following files. My question is should I download all of them OR some of them. Also tell me installation steps. This installation is for HOME PC Windows XP.
    Oracle Business Intelligence Product Support Information      V18294-01      30K
    Download      Oracle Business Intelligence Enterprise Edition Documentation Media Library Release 10.1.3.4.2      V27615-01      24M
    Download      Oracle Business Intelligence Suite Enterprise Edition 10.1.3.4.2 for Microsoft Windows      V27616-01      1.6G
    Download      Oracle Business Intelligence Publisher Desktop 10.1.3.4.2 for Microsoft Windows      V27618-01      118M
    Download      Oracle Business Intelligence Publisher Enterprise 10.1.3.4.2 for Microsoft Windows      V27944-01      1.0G
    Download      Oracle Business Intelligence Applications Licensing and Packaging Guide 7.9.5.1      V15562-01      62K
    Download      Oracle Business Intelligence Applications Documentation Media Library Version 7.9.5.1      V15191-01      7.1M
    Download      Oracle Business Intelligence Applications 7.9.5.1      V15175-01      440M
    Download      Oracle Business Intelligence Applications Documentation Media Library Versions 7.9.6.1 and 7.9.6.2      V22562-01      10M
    Download      Oracle Business Intelligence Applications Licensing and Packaging Guide 7.9.6.2      V22538-01      66K
    Download      Oracle Business Intelligence Applications 7.9.6.2      V22580-01      457M
    Download      Oracle Business Intelligence Data Warehouse Administration Console 10.1.3.4.1 for Microsoft Windows      V16377-01      181M
    Download      Oracle Business Intelligence Data Warehouse Administration Console 10.1.3.4.1 for Microsoft Windows and Informatica PowerCenter and PowerConnect Adapters 8.1.1 SP5 for Windows x86 (32-bit) (Part 1 of 2)      V30753-01 Part 1 of 2      2.0G
    Download      Oracle Business Intelligence Data Warehouse Administration Console 10.1.3.4.1 for Microsoft Windows and Informatica PowerCenter and PowerConnect Adapters 8.1.1 SP5 for Windows x86 (32-bit) (Part 2 of 2)      V30753-01 Part 2 of 2      487M
    Download      Oracle Business Intelligence Data Warehouse Administration Console 10.1.3.4.1 for Microsoft Windows and Informatica PowerCenter and PowerConnect Adapters 8.1.1 SP5 for Windows x86 (64-bit) (Part 1 of 2)      V30754-01 Part 1 of 2      2.0G
    Download      Oracle Business Intelligence Data Warehouse Administration Console 10.1.3.4.1 for Microsoft Windows and Informatica PowerCenter and PowerConnect Adapters 8.1.1 SP5 for Windows x86 (64-bit) (Part 2 of 2)      V30754-01 Part 2 of 2      454M
    Download      Oracle Business Intelligence Data Warehouse Administration Console 10.1.3.4.1 for Microsoft Windows and Informatica PowerCenter and PowerConnect Adapters 8.1.1 SP5 for Windows Itanium (64-bit) (Part 1 of 2)      V30755-01 Part 1 of 2      1.9G
    Download      Oracle Business Intelligence Data Warehouse Administration Console 10.1.3.4.1 for Microsoft Windows and Informatica PowerCenter and PowerConnect Adapters 8.1.1 SP5 for Windows Itanium (64-bit) (Part 2 of 2)      V30755-01 Part 2 of 2      534M
    Download      Oracle Business Intelligence Data Warehouse Administration Console 10.1.3.4.1 for Microsoft Windows and Informatica PowerCenter and PowerConnect Adapters 8.6.1 for Windows x86 (32-bit) (Part 1 of 2)      V30756-01 Part 1 of 2      2.0G
    Download      Oracle Business Intelligence Data Warehouse Administration Console 10.1.3.4.1 for Microsoft Windows and Informatica PowerCenter and PowerConnect Adapters 8.6.1 for Windows x86 (32-bit) (Part 2 of 2)      V30756-01 Part 2 of 2      1.1G
    Download      Oracle Business Intelligence Data Warehouse Administration Console 10.1.3.4.1 for Microsoft Windows and Informatica PowerCenter and PowerConnect Adapters 8.6.1 for Windows x86 (64-bit) (Part 1 of 2)      V30757-01 Part 1 of 2      2.0G
    Download      Oracle Business Intelligence Data Warehouse Administration Console 10.1.3.4.1 for Microsoft Windows and Informatica PowerCenter and PowerConnect Adapters 8.6.1 for Windows x86 (64-bit) (Part 2 of 2)      V30757-01 Part 2 of 2      389M
    Download      Oracle Business Intelligence Data Warehouse Administration Console 10.1.3.4.1 for Microsoft Windows and Informatica PowerCenter and PowerConnect Adapters 8.6.1 for Windows Itanium (64-bit) (Part 1 of 2)      V30758-01 Part 1 of 2      2.0G
    Download      Oracle Business Intelligence Data Warehouse Administration Console 10.1.3.4.1 for Microsoft Windows and Informatica PowerCenter and PowerConnect Adapters 8.6.1 for Windows Itanium (64-bit) (Part 2 of 2)      V30758-01 Part 2 of 2      298M
    Download      Oracle® Warehouse Builder 11g Release 1 (11.1.0.6.0) v2 for Microsoft Windows (32-bit) (Part 1 of 2)      B46845-01 Part 1 of 2      615M
    Download      Oracle® Warehouse Builder 11g Release 1 (11.1.0.6.0) v2 for Microsoft Windows (32-bit) (Part 2 of 2)      B46845-01 Part 2 of 2      537M
    Download      Oracle Real-Time Decisions 2.2.1.1      V16586-01      977M
    Download      Oracle Real-Time Decisions 3.0.0.1      V16912-01      1.2G
    Download      Oracle Real-Time Decisions Applications 2.2.1      B46736-01      4.4M
    Download      Oracle Real-Time Decisions Applications 3.1      V25434-01      11M
    Download      Oracle Business Intelligence Standard Edition One 10.1.3.2.1 for Microsoft Windows (DVD) (Part 1 of 5)      B43693-01 Part 1 of 5      655M
    Download      Oracle Business Intelligence Standard Edition One 10.1.3.2.1 for Microsoft Windows (DVD) (Part 2 of 5)      B43693-01 Part 2 of 5      565M
    Download      Oracle Business Intelligence Standard Edition One 10.1.3.2.1 for Microsoft Windows (DVD) (Part 3 of 5)      B43693-01 Part 3 of 5      663M
    Download      Oracle Business Intelligence Standard Edition One 10.1.3.2.1 for Microsoft Windows (DVD) (Part 4 of 5)      B43693-01 Part 4 of 5      527M
    Download      Oracle Business Intelligence Standard Edition One 10.1.3.2.1 for Microsoft Windows (DVD) (Part 5 of 5)      B43693-01 Part 5 of 5      519M
    Download      Oracle Hyperion EPM System Release 11.1.1.3.0 Installation Documents & Readmes      V19533-01      14M
    Download      Oracle Hyperion Enterprise Performance Management System Installer, Fusion Edition Release 11.1.1.3.0      V17382-01      381M
    Download      Hyperion Enterprise Performance Management System Foundation Services Release 11.1.1.3.0 Part 1 of 4      V17397-01      2.0G
    Download      Hyperion Enterprise Performance Management System Foundation Services Release 11.1.1.3.0 Part 2 of 4      V17369-01      1.2G
    Download      Hyperion Enterprise Performance Management System Foundation Services Release 11.1.1.3.0 Part 3 of 4      V17370-01      1.2G
    Download      Hyperion Enterprise Performance Management System Foundation Services Release 11.1.1.3.0 Part 4 of 4 for Microsoft Windows (32-bit)      V17371-01      224M
    Download      Oracle Hyperion EPM System Release 11.1.2.0.0 Installation Documents & Readmes      V23948-01      17M
    Download      Oracle Hyperion Enterprise Performance Management System Installer, Fusion Edition Release 11.1.2.0.0 for Microsoft Windows (32-bit)      V20850-01      185M
    Download      Hyperion Enterprise Performance Management System Foundation Services Release 11.1.2.0.0 for Microsoft Windows (32-bit) Part 1 of 4      V20799-01      946M
    Download      Hyperion Enterprise Performance Management System Foundation Services Release 11.1.2.0.0 for Microsoft Windows (32-bit) Part 2 of 4      V20800-01      1.9G
    Download      Hyperion Enterprise Performance Management System Foundation Services Release 11.1.2.0.0 for Microsoft Windows (32-bit) Part 3 of 4      V20801-01      1.2G
    Download      Hyperion Enterprise Performance Management System Foundation Services Release 11.1.2.0.0 Part 4 of 4      V20802-01      78M
    Download      Oracle Hyperion Enterprise Performance Management Reporting and Analysis Core Components Release 11.1.2.0.0      V20841-01      389M
    Download      Oracle Hyperion Financial Reporting, Fusion Edition Release 11.1.2.0.0      V20798-01      61M
    Download      Hyperion Interactive Reporting Release 11.1.2.0.0 Part 1 of 2      V20829-01      413M
    Download      Hyperion Interactive Reporting Release 11.1.2.0.0 Part 2 of 2 for Microsoft Windows (32-bit)      V20831-01      155M
    Download      Hyperion SQR Production Reporting Release 11.1.2.0.0 Part 1 of 2      V20833-01      143M
    Download      Hyperion SQR Production Reporting Release 11.1.2.0.0 Part 2 of 2 for Microsoft Windows (32-bit)      V20840-01      74M
    Download      Hyperion Web Analysis Release 11.1.2.0.0      V20851-01      52M
    Download      Oracle Hyperion Smart View for Office, Fusion Edition Release 11.1.2.0.0 for Microsoft Windows      V20842-01      79M
    Download      WebLogic Server 9.2 MP3 for Microsoft Windows (32-bit)      V13486-01      636M
    Download      Oracle Application Server 10g Release 3 (10.1.3.4.0) Companion CD 1 of 3 for Microsoft Windows x86 (32-bit)      B51010-01      481M
    Download      Oracle Application Server 10g Release 3 (10.1.3.4.0) Companion CD 2 of 3 for Microsoft Windows x86 (32-bit)      B51011-01      643M
    Download      Oracle Application Server 10g Release 3 (10.1.3.4.0) Companion CD 3 of 3 for Microsoft Windows x86      B50895-01      343M
    Download      Oracle Data Integrator, Oracle Data Profiling, and Oracle Data Quality for Data Integrator 10g (10.1.3.5.0) for Windows Platforms (CD)      V14803-01      579M
    Download      Oracle Data Integrator Application Adapters for Data Integrator 10g (10.1.3.5.5)      V18940-01      2.4M
    Download      Oracle Identity Management 11g (11.1.1.1.0) for Microsoft Windows (32-bit)

    Hi,
    if you r going to install 11g, my suggestion is
    install
    oracle 11g database
    rcu 11.1.1.6
    obiee 11.1.1.6(in 11.1.1.5 there r around 400bugs)
    obi apps 7.9.6.3
    informatica9 (8.6 also ok)
    DAC 10.1.3.4
    you can get these softwares in
    http://edelivery.oracle.com

  • Policy domain doesn't protected

    I have following problems:
    1.I haven't protection for any created policy domain, I have only protection for default policy domains /access and /identity . It can protect requested policy domain, if I put my resources under policy domains . /access or /identity.
    How can I test that Oracle Access Manger really protect created policy domain on web server, I always used access tester, always fine work,but resources aren't protected.
    For simple OAM configuration I used Doc ID: Note:437423.1 Step by Step: How to Protect a Root '/' Policy Domain With A Form Deployed On The Same WebGate HTTP Server, but resources aren't protected again.
    2.When I enable default policy domains, I get very strange case, I have to try to log on at least 2-3 times for requested link on Oracle Access Console , that is very difficult for administration.

    Not the same i had a similar one. I crated my own policy domain. ( As suggested by kiran )
    Just documented the steps, try it out, Hope this helps.
    http://nagarun.wordpress.com/2007/12/22/oracle-access-manager-administration/
    Cheers, Nag

  • System requirements for installing Fusion Apps.

    Please, Oracle gurus,
    Has anyone been able to install a Fusion apps. in a "pc" or a "laptop" ? is it possible to install it in a server alone or we need 2 physical servers?
    How many RAM gb, are required?
    I would like to install the new release but I think it's much more complex than installing a EBS-R12 and the RAM requirements are bigger. I have not found exact requirements for now given the number of different products neccesary.
    Thanks
    Juanje

    Confirmed,
    No one in Oracle can give a figure of the minimum RAM required to install a demo version of Fusion apps. in a laptop or pc.(perhaps this is not possible, but I would like to know it, not to try even the installation).
    The answer would be simple: 4 gb/8 gb/ 16gb/32 gb.of ram.
    For example I've got an EBS-release 121.1. up and running with a 4 gb.-ram laptop, and it works very well to study.
    This is the type of answer I would need.
    The answer "this info is in the manuals" does not solve my problem, if this info. was clearly specified in the manuals I would not be here writing this question.
    Of course I've also look for this info in the web for several days.
    Please, if someone has installed a visio-demo of the Fusion apps. release, share the knowledge.
    Many thanks.
    Juanje

  • ISE node registering after change domain-name

    At Customer Site I changed the domain name of our 4 ISE server before they were registered to any deployment. I regenerated a self signed certificate and started to register the other nodes to the deployment. This went well for the 2 PSN nodes which have a ip address in a different subnet. I tried to register the presumed secondarry PAN/MnT node and got the following error message "
    Node beiing registerd has FQDN 'ISE-PAN-AP02.office.intern' which cannot be resolved. Please check your DNS configuration."
    My DNS config is in order.
    Can anyone please tell me want possible can be the cause of this?

    Please check these Prerequisites:
    The fully qualified domain name (FQDN) of the standalone node that you are going to register, for example, ise1.cisco.com must be DNS-resolvable from the primary Administration ISE node.  Otherwise, node registration will fail. You must enter the IP addresses  and FQDNs of the ISE nodes that are part of your distributed deployment  in the DNS server.
    •The  primary Administration ISE node and the standalone node that you are  about to register as a secondary node should be running the same version  of Cisco ISE.
    •Node  registration fails if you provide the default credentials (username:  admin, password: cisco) while registering a secondary node. Before you  register a standalone node, you must log into its administrative user  interface and change the default password (cisco).
    •You  can alternatively create an administrator account on the node that is  to be registered and use those credentials for registering that node.  Every ISE administrator account is assigned one or more administrative  roles. To register and configure a secondary node, you must have one of  the following roles assigned: Super Admin, System Admin, or RBAC Admin.  See Cisco ISE Admin Group Roles and Responsibilities for more information on the various administrative roles and the privileges associated with each of them.
    •If  you plan to register a secondary Administration ISE node for high  availability, we recommend that you register the secondary  Administration ISE node with the primary first before you register other  Cisco ISE nodes. If Cisco ISE nodes are registered in this sequence,  you do not have to restart the secondary ISE nodes after you promote the  secondary Administration ISE node as your primary.
    •If  you plan to register multiple Policy Service ISE nodes running Session  services and you require mutual failover among those nodes, you must  place the Policy Service ISE nodes in a node group. You must create the  node group first before you register the nodes because you need to  select the node group to be used on the registration page. See "Creating, Editing, and Deleting Node Groups" section for more information.
    •Ensure  that the Certificate Trust List (CTL) of the primary node is populated  with the appropriate Certificate Authority (CA) certificates that can be  used to validate the HTTPS certificate of the standalone node (that you  are going to register as the secondary node). See the "Creating Certificate Trust Lists in the Primary Cisco ISE Node" section on page 12-24 for more information.
    •After  registering your secondary node to the primary node, if you change the  HTTPS certificate on the registered secondary node, you must obtain  appropriate CA certificates that can be used to validate the secondary  node's HTTPS certificate and import it to the CTL of the primary node.  See "Creating Certificate Trust Lists in the Primary Cisco ISE Node" section on page 12-24 for more information.

  • Oracle access manager - Policy domain - Return Type

    Hi,
    I have a requirement where I need to return few LDAP parameter values through Policy domain while redirecting. But the return type should be propertytype and not headervar or cookie. This is SSO integration with websphere using JAAS subject. We have inhouse TAI connector developed for integration between websphere and oracle access manager.
    Please help me to resolve this issue.
    Regards,
    Prashant

    Hi Prashant,
    OAM can return any type that you want, and OAM will set the name/value for that type - you can put "propertytype" in the type column, and the name and return attribute in the respective fields. "Cookie" and "HeaderVar" are the only types used by OAM WebGates, but your AccessGate (custom in-house connector) should be able to retrieve the values of propertytype that OAM sets.
    Regards,
    Colin

Maybe you are looking for