Users do not appear out of OID in weblogic

I want to do SSO for webcenter
Do as it is written in Oracle ® Retail Accelerators Guide for WebCenter 11g.
You must add the OSSO Identity Asserter to a WebLogic domain. In addition to the
OSSO Identity Asserter, Oracle recommends the following Authentication providers:
DefaultAuthenticator
OID Authenticator
To add providers to your WebLogic domain for OSSO Identity Assertion:
1. Log on to the WebLogic Administration Console.
2. Under the Domain Structure (left navigation pane), click Security Realms. The
Summary of Security Realms screen appears.
3. On the Summary of Security Realms screen, click the default security realm
(myrealm). The Settings for myrealm screen appears.
4. On the Settings for myrealm screen, click the Providers tab, and then click New.
The Create a New Authentication Provider screen appears.
5. Enter a provider name for the OSSO Identity Asserter, select the relevant type, and
then click OK. For example:
Name: OSSO Identity Asserter
Type: OSSOIdentityAsserter
The new provider is added to the list of providers and appears on the Settings for
myrealm screen.
6. Click the name of the provider you just added.
7. On the Common tab, set the relevant values for the parameter, set the Control
Flag value to Sufficient, and then click Save.
8. On the Providers tab, click DefaultAuthenticator. The Settings for
DefaultAuthenticator screen appears.
9. Set the Control Flag value to Optional and click Save.
10. On the Providers tab, click New. The Create a New Authentication Provider
screen appears.
11. Enter a provider name for the OID Authenticator, select the relevant type, and
then click OK. For example:
Name: OID Authenticator
Type: OracleInternetDirectoryAuthenticator
The new provider is added to the list of providers and appears on the Settings for
myrealm screen.
12. Click the name of the provider you just added and review the settings. Do not
change the Control Flag value until you have verified that the Oracle Internet
Directory configuration is valid.
On the Provider Specific tab, specify relevant values in the following fields:
Host – specify the host name of the Oracle Internet Directory.
Port – specify the port number associated with the Oracle Internet Directory.
Principal – specify an LDAP administrative user. For example, cn=orcladmin.
Credential – specify the password associated with the LDAP administrative
user.
Confirm Credential – enter the password again to confirm the credential.
User Base DN – specify the distinguished name (DN) of the tree in the Oracle
Internet Directory that contains the users.
Use Retrieved User Name as Principal – select this check box.
Group Base DN – specify the distinguished name (DN) of the tree in the
Oracle Internet Directory that contains the groups.
Propagate Cause For Login Exception – select this check box.
14. Click Save.
The order in which providers populate a subject with principals is significant. You
may want to reorder the list of all providers in your realm and bring the newly
added provider to the top of the list, similar to the following:
OSSO Identity Asserter
OID Authenticator
Default Authenticator
Default Identity Asserter
16. Save all configuration settings and restart the WebLogic server for the changes to
take effect.
**17. Log on to the WebLogic Administration Console and navigate to the Settings for**
**myrealm screen.**
**18. Click the Users and Groups tab to view a list of users and groups included in the**
**configured Authentication providers. You should see user names from the Oracle**
**Internet Directory configuration, which verifies that the configuration is valid and**
**working.**
But I do not see the users who are registered in the OID
as you can see the logs as to why they do not appear?

I solved problem, but
When I change control flag to SUFFICIENT for OID Authentication Provider I can’t start weblogic.
./startWebLogic.sh
<Server subsystem failed. Reason: weblogic.security.SecurityInitializationException: User weblogic is not permitted to boot the server; The server policy may have changed in such a way that the user is no longer able to boot the server.Reboot the server with the administrative user account or contact the system administrator to update the server policy definitions.
weblogic.security.SecurityInitializationException: User weblogic is not permitted to boot the server; The server policy may have changed in such a way that the user is no longer able to boot the server.Reboot the server with the administrative user account or contact the system administrator to update the server policy definitions.
In OID is the user weblogic with the same password which in config file with login and password and group Administrators.

Similar Messages

  • Horizontal guide would not appear out of the top ruler since Indesign was installed on new computer.

    I feel so frustrated because I cannot get the horizontal guide to appear out of the top ruler since I installed Indesign on my new computer. I can get the vertical guide out of the left ruler like always. I have searched the net and came across a way to get the horizontal guide (by double clicking on the left ruler) and also to get one by changing a vertical guide into a horizontal one (alt clicking while dragging). I was just wondering why would I not get the guides as always from both rulers? If anybody can help me, I would really appreciate it!

    I forgot to mention that I am using Adobe Indesign CS5.

  • My user does not appear and i cant log in

    I just bought my new macbook pro with retina display and did the configuration process but  when i was going to log in my user didn't appear and i can't log in. I don't know what to do, please help me.

    http://www.macworld.com/article/2010716/mac-101-getting-set-up.html

  • End user notifications not appearing for Software updates

    I'm pushing out security updates to Windows 7 clients. The updates are deploying correctly but some users say they are not seeing any notification that the updates are available or that they are installing - It's set up in the deployment to notify. They
    say the first time they know about them is when the machine reboots. On my own machine I always get the notifications, on all the IT users near me we always get the notifications, and on all the test machines I've built I see the notifications. It's possible
    my users are just not registering the message before it fades away.
    I've made some changes to the Computer Agent, Greater than 24 hours - remind every 3 hours, less than 24 remind every 2 and less than 1 remind every 5 minutes so that may help. What I'm wondering though is there a local log on the client end anywhere that
    updates every time a notification appears - I could at least verify it - or is there a local reason why the balloon doesn't show. It's not turned of in a GPO.
    Is there any way that the balloon can be replaced with a pop up that the user would have to click OK to clear?

    Thanks for the reply - I had a look at the logs - here's an example
    Adding Open Software Center Menu for Icon Microsoft.SoftwareCenter.Client.Notification.NotifyObjectComplete, because no required item and no reboot are present.      (Microsoft.SoftwareCenter.Client.Notification.NotifyObjectComplete at get_VisibleMenuItems)  
     SCClient    05/11/2014 12:15:55    1 (0x0001)
    Setting the current app data      (Microsoft.SoftwareCenter.Client.Notification.NotifyObjectBase at HandleNotificationEvent)    SCClient    05/11/2014 12:15:55    1 (0x0001)
    Verbosity set to low, don't show balloon      (Microsoft.SoftwareCenter.Client.Notification.NotifyObjectBase at HandleNotificationEvent)    SCClient    05/11/2014 12:15:55    1 (0x0001)
    The current visible object is of type Microsoft.SoftwareCenter.Client.Notification.NotifyObjectInstalling with priority Installing      (Microsoft.SoftwareCenter.Client.Notification.NotifyObjectBase at HandleCurrentNotifyObject)    SCClient  
     05/11/2014 12:15:55    1 (0x0001)
    This object is of type Microsoft.SoftwareCenter.Client.Notification.NotifyObjectComplete with priority Completed      (Microsoft.SoftwareCenter.Client.Notification.NotifyObjectBase at HandleCurrentNotifyObject)    SCClient  
     05/11/2014 12:15:55    1 (0x0001)
    Removing monitored notification object Microsoft.SoftwareCenter.Client.Notification.NotifyObjectInstalling for app Security Update for Microsoft .NET Framework 3.5.1 on Windows 7 and Windows Server 2008 R2 SP1 for x64-based Systems (KB2972100)   
      (Microsoft.SoftwareCenter.Client.Notification.MonitoredNotifyObjectsCollection at RemoveObject)    SCClient    05/11/2014 12:15:55    1 (0x0001)
    Number of total seconds in countdown is 5400; starting value is 4; seconds til restart is 5396, system will restart at 13:45:54 (utc end time = 13:45:55)      (Microsoft.SoftwareCenter.Client.Pages.RestartCountdownDialog at .ctor)  
     SCClient    05/11/2014 12:15:58    1 (0x0001)
    User will be alerted (and hide/close disabled) at 13:15:54      (Microsoft.SoftwareCenter.Client.Pages.RestartCountdownDialog at .ctor)    SCClient    05/11/2014 12:15:58    1 (0x0001)
    ShowBalloonTip: determining if tooltip should be shown for notification type = Microsoft.SoftwareCenter.Client.Notification.NotifyObjectRestartCountdown      (Microsoft.SoftwareCenter.Client.Notification.NotifyObjectBase at ShowBalloonTip)  
     SCClient    05/11/2014 12:15:58    1 (0x0001)
    Notification is for a logoff/restart required or logoff/restart countdown.      (Microsoft.SoftwareCenter.Client.Notification.NotifyObjectBase at ShowBalloonTip)    SCClient    05/11/2014 12:15:58  
     1 (0x0001)
    Attempting to display the notification balloon with title 'Restart Required' and tooltip 'Recently installed software requires your computer to restart in 90 minutes to complete the installation. No additional software can be installed until your computer has
    restarted.  '.      (Microsoft.SoftwareCenter.Client.Notification.NotifyObjectBase at ShowBalloonTip)    SCClient    05/11/2014 12:15:58    1 (0x0001)
    The operating system version is 6.1.7601.65536      (Microsoft.SoftwareCenter.Client.Notification.NotifyObjectBase at ShowBalloonTip)    SCClient    05/11/2014 12:15:58    1 (0x0001)
    This is Windows 7 or earlier, showing notification balloon      (Microsoft.SoftwareCenter.Client.Notification.NotifyObjectBase at ShowBalloonTip)    SCClient    05/11/2014 12:15:58    1 (0x0001)
    NamedTimer: Starting timer timeToAvoidDisplayingTheSameBalloon, interval = 120000, period = -1      (Microsoft.SoftwareCenter.Client.Common.NamedTimer at .ctor)    SCClient    05/11/2014 12:15:58    1
    (0x0001)
    NamedTimer: timeToAvoidDisplayingTheSameBalloon initial interval = 120 seconds, subsequent period = 0 seconds, overall due at 05/11/2014 12:17:58      (Microsoft.SoftwareCenter.Client.Common.NamedTimer at SetTimerInternals)    SCClient  
     05/11/2014 12:15:58    1 (0x0001)
    Would that imply that it's set not to show the balloon - except on the reboot?
    I had a look at the following policies using wbemtest 
    DisplayNewProgramNotification
    CCM_SoftwareDistributionClientConfig/DisplayNewProgramNotification
    CCM_ClientAgentConfig/DisplayNewProgramNotification
    and both are correct - DisplayNewProgramNotification set to true

  • User does not appear in group created from SAP role

    Hello --
    I have a user that has logged into InfoView successfully with SAP authentication and is showing in the CMC under the "User List." When I view the list of users in the group that was created from the SAP role he was a part of, he is not there.   When I go to the user account and view "Member of," the group IS shown in the list. 
    Any idea?  Any way I can "refresh" the group or anything like that?
    Thanks
    Casey

    Thanks for the replies.
    We are on XI 3.1 FP1.8 and we do have a CMS cluster.  Server reboots this weekend seem to have resolved the problem. I am curious why this question was asked, though:
    "Did you reassign the user to another SAP role after the user has already logged at least once in the InfoView?"
    Is this something that could have caused the problem or is it a possible workaround if we run into the issue again? 
    Thanks again...
    Casey

  • Want to delete an account but user does not appear in User and Groups after upgrading to Mountain Lion

    OSX 10.8
    2.7 Ghz Intel Core i5

    User is provisioned as Individual, not as Group. We validated the Groups and Ensure "no apostrophe" is present. Any suggestions? Created the Ticket with Oracle Support too... but no luck :(
    Any help in regard is greatly Appreciated.

  • Guest users in WLC are not logged out after pre defined time.

    Hi,
      My customer wants to create guest users in wireless lan controller. We were successfully able to create that and it worked . But the problem is that to access the internet the users have to change the "proxy server" settings on the internet explorer. As a result the guest users are not logged out automatically after the pre defined amount of time. We enabled " by pass proxy server " settings in internet explorer also, unfortunately it didnt work too.
      If we disable the proxy settings in internet explorer customers were logged out, but the problem is that once the customer log in he will change the proxy settings in internet explorer to browse net  but wont get disconnect unless and untill he manually change the proxy settings in the internet explorer.
      Is there any other way to solve this issue? Can any one provide any alternative solution  if possible.
    Regards,
    Bibin

    Can you explain how your proxy server has anything to do with your wireless access duration?
    Does you proxy server have the logic that stops the internet access after a period of time? If so, I assume you turn proxy off in order to web-authenticate? If so, then you just need to tell the browser to not proxy for the virtual IP address of the WLC.   You'll never get redirected to the webauth page if you don't send a https request to it (as if, your browser is sending it the IP of your proxy server).

  • Shopping carts not appearing int eh worklist of the buyer

    Shopping carts that are created by the user are not appearing in the buyer Worklist if he is not assigned to that product category.
    Please advice,I need the shopping cart appearing in the worklist of the buyer even if he is not assigned to that product category.

    Hi
    Under that purchase group any buyers are assigned - check it up
    for eg.
    001 - product category - ABC -Purchase group - John - Purchaser
    in the PPOMA purchase group ABC - responsible product category is 001 and under ABC purchase Group - Assigend John
    now John might receive sc if you dont assign any sosurce of supply / if you did sourcing configuration
    update here what are the seetings are existed in define sourceing.
    br
    muthu

  • Users unable to fill out form

    Created a form and it worked fine. Added some lines of text to the form and now users can not fill out the form. Wondering what I did to have the happen.

    plz return to site to finish

  • Memebers of group not appear to Group Owner at FIM portal

    In my distribution groups I have added some member via owner approval and that member appears added to me when i view that group from FIM admin portal but when i look at the same DG from Owner's FIM portal then user does not appear! strange ! 
    Any suggestion pls why is this happening?

    Some MPRs are not enabled or they have non-default configuration.
    Check if you have the following MPRs enabled:
    Distribution list management: Users can read selected attributes of group resources
    Distribution list management: Owners can read attributes of group resources
    If you found my post helpful, please give it a Helpful vote. If it answered your question, remember to mark it as an Answer.

  • Why does one tag out of four not appear for users accessing a single Thunderbird account via multiple computers?

    Four users share a single Thunderbird email account (version 24.5.0) on their four respective computers. Each user is represented by a tag color to designate which emails they are responsible for. One user is having trouble seeing when their tag is used by the other three users, the email appears untagged. However, the other three users see it as tagged. Likewise, when that one person uses the tag, the other three cannot see the email as being tagged. This is not an issue when the other three tags are used between the four people.
    We have checked that we are all using the exact same color to represent the tag, and that we are all using the same IMAP settings. Does anyone know why this might be happening?

    Are you sure the odd one out is IMAP? sounds like it is pop to me.

  • Some users don't appear at the login screen when restarting, only upon logging in as a user who does appear, then logging out. How can I make all users appear on the initial list?

    I've inherited a previously used early 2011 13-inch MacBook Pro at work.
    I now have my own account on the computer, however the account does not show up on the list of users to log in as in the start up log in screen. It will only appear if I first log in as one of the users who do appear, then logout. The background also changes between these two log in screens - the start up one is white whereas after logging out of one user it's the brushed steel background. My account has admin powers.
    Anyone have any ideas how I can make this account also show up on the start up screen?
    Thanks in advance for any help.

    I do think it has something to do with FileVault.
    Under System Preferences -> Security & Privacy -> FileVault I try and click "Enable users" near the bottom (after unlocking with an admin password). If I do this from my own account a green check mark appears next to my name, but upon clicking "done" I received this message after a brief loading period:
    The following users weren’t allowed to unlock this disk because an unknown error occurred: (myusername).
    I tried going into the root account and performing this same process, the first time System Prefences unexpectedly quit, and the second I received the same error as above after clicking the "Enable User..." button next to my account and trying to hit "Done".

  • Iphone 5 I do not go out or do not appear in upgrede AirPlay for ios 7.0.4 safari browser is not smooth and too long kept out the phrase "safari can not search for too many repetitions search"

    iphone 5 I do not go out or do not appear in upgrede AirPlay for ios 7.0.4 safari browser is not smooth and too long kept out the phrase "safari can not search for too many repetitions search"

    AphexTwin wrote:
    - no Apple input?
    Of course not.  Didn't you bother to read the TOU of this forum?  This is a USER TO USER technical support forum.  Apple doesn't post here.

  • CM Repository manager is not appearing for other users

    Hi Friends,
      I have configured CM repository manager with the user having super admin role.
    After configuring it am able to see the KM content folder in the Content Administration->KM Content only with the user from where i have configured it. But if i login with the other non-super users the KM content folder is not appearing.
    when i open the permissions of the KM content folder through the details of the context menu am getting as below.
    child permissions
    read permissions
    write permissions
    parent permissions etc
    where all above are in display mode. So with this i cannt give read or write permission to any other user.
    Could anyone please help me out to make it visible to all users.
    I have activated all repository services while creating CM repository manager.
    Is there any other permissions to be set to make KM folder visible to all users or do i need to any other repository service?
    Regards
    Sireesha.

    Hi Lakshmi,
    Content manager role has been assigned to other users.
    Regards
    Sireesha.

  • Mac user, OSX 10.9.4. CS6, in the new Blur gallery the pin with adjusters does not appear for any of the three blur filters. This may have occurred since taking adobe watermark add-on and updating Bridge. any ideas?

    Mac user, OSX 10.9.4. CS6, in the new Blur gallery the pin with adjusters does not appear for any of the three blur filters. This may have occurred since taking adobe watermark add-on and updating Bridge. any ideas?

    I am using Mac OSX 10.10.1 (memory 8 GB 1600 MHz DDR3, graphics Nvidia GeForce GT 650M 1024 MB)
    and my version of Photoshop is CC.
    I ran into  the same problem: I am able to place and view Blur Gallery pins but the adjustment wheel or outer control arounf the pin that allows you to tweak the blur value disappeared after being initially available. Additionally, the placed pin or pins appear to flicker on screen (while in blur gallery mode) until committing the change with the OK button. I have tried restarting both the computer and Photoshop, as well as what some other users have suggested such as View>Show>Edit pins turned on. Nothing has helped so far. I am still able to adjust the blur amount  from the Blur Tools slider. thank you.

Maybe you are looking for

  • PLM 7.0  PLMWGUI viewer error

    Hi, I have document that is checked into the standard rep DMS_C1S_ST. Using the SAP GUI I can display it with no problems using cv03n. Upon trying to display the same document using the SAP PLMWUI  (PLM 7.0) I get the following error "Workstation app

  • NET Runtime 2.0 Error

    one of our customer gets the following error in the event viewer on the server as well as the client pc's while trying to run the sales analysis. Faulting application sap business one.exe, version 8.80.232.0, stamp 4c80ebea, faulting module ntdll.dll

  • My Computer Crashed Last night and now itunes is gone what do i do?

    Hi I have Windows XP on a HP Pavillion. I have itunes well had it until my computer crashed. Then all my music is gone. I had 30GB of music loaded and $5000 of music purchased from itunes. How do I get that back on my PC? Did I just lose $5000. All t

  • InDesign CC is crashing when I try to update assignment from inCopy CC.

    Workflow is:  I set up inDesign file, select text boxes and create assignments, then send to editor by email.  Editor works on file in inCopy and sends me back the assignment. When I try to update the text-- by double-clicking the returned assignment

  • Lightroom can't find Photoshop CS3 to edit files?

    I installed Lightroom, and then the 1.1 update when I had Creative Suite 2 installed on my Sony Vaio laptop. I've since installed Creative Suite 3, and uninstalled CS2... Now, when I try to edit a photo from Lightroom, it can't find Adobe Photoshop.