DevOps Cloud (ADM)
Cybersecurity
IT Operations Management
[OIDP] 2016-08-12T13:02:50.256-0400
Level: DEBUG
Code: com.novell.oidp.profile.authentication.MethodProfile.getNextExecutable() [615] thread=http-bio-8443-exec-4
Message:
Get next contract executable:
Executables count: 3
Counter: 2
Executable: (Auto) IDM Admin Role Mapping Method(id={$auto}-admin-role-mapping-method)
Type: non-user
Session authenticated: false
Valid on session: false
Method selected for execution.
[OIDP] 2016-08-12T13:02:50.256-0400
Level: TRACE
Code: com.novell.oidp.profile.authentication.MethodProfile.authenticateMethod() [658] thread=http-bio-8443-exec-4
Message: Authentication Method executing: (Auto) IDM Admin Role Mapping Method
[OIDP] 2016-08-12T13:02:50.258-0400
Level: DEBUG
Code: com.novell.oidp.authentication.classes.RoleMapping.doAuthenticate() [214] thread=http-bio-8443-exec-4
Message:
Assigning the following role(s) to selected principal 'cn=uaadmin,ou=admins,ou=system,o=acme
Name: system::IDPAdministrator
[OIDP] 2016-08-12T13:02:50.258-0400
Level: TRACE
Code: com.novell.oidp.profile.authentication.MethodProfile.authenticateMethod() [661] thread=http-bio-8443-exec-4
Message: Authenticated authentication class: com.novell.oidp.authentication.classes.RoleMapping, Status: AUTHENTICATED
[OIDP] 2016-08-12T13:02:50.258-0400
Level: TRACE
Code: com.novell.oidp.profile.authentication.MethodProfile.authenticateMethod() [682] thread=http-bio-8443-exec-4
Message: Authentication Method (Auto) IDM Admin Role Mapping Method succeeded
[OIDP] 2016-08-12T13:02:50.259-0400
Level: TRACE
Code: com.novell.oidp.profile.authentication.UserIDProfile.validateIdentifiedPrincipal() [136] thread=http-bio-8443-exec-4
Message: Session not authenticated. Principal considered valid!.
[OIDP] 2016-08-12T13:02:50.259-0400
Level: TRACE
Code: com.novell.oidp.session.authentication.NIDPAuthentication.<init>() [68] thread=http-bio-8443-exec-4
Message: Created new Local Consumed Authentication!
[OIDP] 2016-08-12T13:02:50.259-0400
Level: TRACE
Code: com.novell.oidp.profile.authentication.ContractExecutionProfile.authenticateSessionByContract() [770] thread=http-bio-8443-exec-4
Message: Created new NIDPAuthnContext for ContractExecutionProfile with Auth Instant: 1471021370259
[OIDP] 2016-08-12T13:02:50.260-0400
Level: TRACE
Code: com.novell.oidp.session.authentication.NIDPAuthentication.addAuthnContext() [373] thread=http-bio-8443-exec-4
Message:
Class: NIDPLocalAuthentication
Identity Id: df880dc9f1eb6742c7a3df880dc9f1eb
Display Text: np-contract-{$default-card}
Consumed: true
AuthnContext Objects:
Class: NIDPAuthnContext
Auth Instant08-12 13:02:50 0259 (1471021370259) (Elapsed: 1)
LastUsedTime08-12 13:02:50 0259 (1471021370259) (Elapsed: 1)
Mag Context: false
Class: AuthenticationContract
Id: np-contract
Name: User Name/Password Login
URI: idm:login:user:np
Trust Level: 0
Timeout: 0
Check Trust Level: false
Show Pwd Expired UI: true
Remote: false
Default: true
Executable: Name/Password Method(id=np-method)
Executable: SSPR Check Method(id=sspr-checks-method)
Executable: (Auto) IDM Admin Role Mapping Method(id={$auto}-admin-role-mapping-method)
Authentication Card: User Name/Password Login-{$default-card}(id=np-contract-{$default-card})
Auth Instant08-12 13:02:50 0259 (1471021370259) (Elapsed: 1)
LastUsedTime08-12 13:02:50 0259 (1471021370259) (Elapsed: 1)
[OIDP] 2016-08-12T13:02:50.260-0400
Level: TRACE
Code: com.novell.oidp.session.NIDPSession.setAuthPrincipal() [1290] thread=http-bio-8443-exec-4
Message:
Setting the Authenticated Principal
Candidate Principal:
Type: LDAPPrincipal
GUID: df880dc9f1eb6742c7a3df880dc9f1eb
User Identifier: cn=uaadmin,ou=admins,ou=system,o=acme
Authentication Source: bisadus
Cached Attribute Count: 12
No Existing Principal Found! Candidate Principal set in session 0e969fa98e544d28af92096f2ca4ea13-8ee7eae3a3effbfae6
[OIDP] 2016-08-12T13:02:50.260-0400
Level: TRACE
Code: com.novell.oidp.attributes.cache.CacheAttributeSource.copyAttributes() [109] thread=http-bio-8443-exec-4
Message:
Copying 12 attributes from this cache to the destination cache that has 0 attributes.
Adding cached attribute: nrfMemberOf
Adding cached attribute: srvprvPreferredLocale
Adding cached attribute: mail
Adding cached attribute: saml2-mapping-attr
Adding cached attribute: initials
Adding cached attribute: givenName
Adding cached attribute: mobile
Adding cached attribute: dn
Adding cached attribute: userCN
Adding cached attribute: Surname
Adding cached attribute: userDN
Adding cached attribute: {$authsource.ObjectNameAttr}
The destination cache now has 12 attributes.
[OIDP] 2016-08-12T13:02:50.260-0400
Level: TRACE
Code: com.novell.oidp.session.NIDPSession.authenticate() [2781] thread=http-bio-8443-exec-4
Message: Authenticating Session 0e969fa98e544d28af92096f2ca4ea13-8ee7eae3a3effbfae6-CX with authentication NIDPLocalAuthentication, Session type: PERSISTENT
[OIDP] 2016-08-11T20:07:34.818-0400
Level: INFO
Code: com.novell.oidp.session.NIDPSession.authenticate() [1146] thread=localhost-startStop-1
Message:
Authenticated user cn=uaadmin,ou=admins,ou=system,o=acme in User Store IDM eDir with roles <Roles(null)>:
<RoleSet(null)>:
Role: IDPAdministrator
Name: system
[OIDP] 2016-08-12T13:02:50.263-0400
Level: TRACE
Code: com.novell.oidp.profile.authentication.ContractExecutionProfile.returnFromAuthnRequest() [722] thread=http-bio-8443-exec-4
Message: No pending request OR going to Password Expired Servlet. Status: AUTHENTICATED
[OIDP] 2016-08-12T13:02:50.263-0400
Level: TRACE
Code: com.novell.oidp.profile.LoginProfile.executeContract() [716] thread=http-bio-8443-exec-4
Message: Contract Execution Profile "execute()" returned status: AUTHENTICATED
[OIDP] 2016-08-12T13:02:50.263-0400
Level: TRACE
Code: com.novell.oidp.profile.LoginProfile.executeContract() [725] thread=http-bio-8443-exec-4
Message: Set Authentication Context NIDPAuthnContext with Auth Instant 1471021370259 from Contract Execution Profile ContractExecutionProfile
[OIDP] 2016-08-12T13:02:50.263-0400
Level: INFO
Code: com.novell.oidp.profile.LoginProfile.successfulAuthentication() [169] thread=http-bio-8443-exec-4
Message: nLogin succeeded, redirecting to https://myserver.acme.com:8443/osp/a/idm/auth/oauth2/authcodecontinue?privateId=f8847a8a493e6a844d00&client_id=rbpm&irdpkg=1471021339493-1870600049.
[OSP] 2016-08-12T13:02:50.432-0400
Level: DEBUG
Code: com.novell.osp.OSPRequestContext.logRequest() [1737] thread=http-bio-8443-exec-4
Message:
HttpServletRequest (Number 6)
Method: GET
Request URL: /osp/a/idm/auth/oauth2/authcodecontinue
Query String: privateId=f8847a8a493e6a844d00&client_id=rbpm&irdpkg=1471021339493-1870600049
Scheme: https
Context Path: /osp
Servlet Path: /a
Path Info: /idm/auth/oauth2/authcodecontinue
Server Name: myserver.acme.com
Server Port: 8443
Content Length: -1
Locale: en_US
Host IP Address: 10.1.1.2
Remote Client IP Address: 10.4.4.222
Cookies
(1 of 3): JSESSIONID=FC02C133431DD08F292D3A69E1FDEF65
(2 of 3): x-oidp-oauth2-1471021339493-1870600049=B5BNmMPd8oj45QxF2CvOVh33b6pBsbTT3zSY1BAtZ3Xbt2uwFj2Mqf5@EPCC1NryQIdk7JCLE6oicz8V28SwumOIOrJTPQxrNM42E4M5qV/D@LBkAn6pS9BeHFiRPzW00qC4l2FnJH/h0Vb7zRadh967S8CW8yFBKSYeU5Azb1HkdvWPgFWY3g2gBpqqh45sgGaliDi@2HjrOWyO6DuF3jPV2d3KCd4kLmUAQOjsfk@tuMOkgNmIzv8ONJDnblk77welMRvOsjGuQNAK4W7ejbMgqoVAmioFzNxgul7@9DqSWt7HLZadsqeF/ukYqfFBdbXm/wZAfKhdjupdnGNbRLUs6BtmdDWqB83JGuSDgH3DSIQJhUjgjduH2NAoOWJyBSKWzktm38kfed1jhDSXbw~~
(3 of 3): x-oidp-session59303d34382c2d310=200-PPNW/I7PKXCVDJGNXOZQQJN XW0V6RVQW8JBL7 I-2E7B88D7-C458!1!C459!120!127!9Ll0wqc9CnDbOIfDBku8M328qiMxBuDGG99Xbn2ruS4~!tUgfSAvPk29esQ4LlF/HCKafkll7NKeupd35JcJjj4iCZif hJtHkgqk0YiMz3F8Y6Kea2QI71jUF7w2l7CYCULLuvNUtVan3p4H/Yqe1WhCfo3oLY UXJ2ZX9PFxTdmbshnwOOECOr3t3P/ rlRjf3xzjW5KZZVrWMo CRn40Eg7wsZxvEr6KMBU/dHjITJKrlR1/RffsSlvH/AfHAaAYngWMgO53V2CjMntr50UGFY/b4UGBfApf2EGaXuUu75u/o/vtPargXXImMhc8fpnxMPjmpTyjUcJ/19vQV03s17TPVePGTEqJxH9rGLMcFfnZ8Rlcz3MXIE77IXrIaXx0hIigOZUe5 5t2QENuz66UynSZzTgwiJwlscdQ/vwiNmZUneL4FtEHy/i6jLtLvweGTRtmW2Ex/BEY4oJX3/Ri4YCdxryzuE0BP62g7FffKcAcGjUfOOodWXLS0Su4Kmuyx/KBeHfbpy2Al8ap58i89ZV2 ryg8m/J9UJkqiEoowLD8KPYBC9BBPWYdNoUVH4iui1QjDfCJ8fmhiETdJ3uFJBKKHdhymbj7ngGF2RMGQYDvKYdkpxgfUyI 3hAogrA0vSXMY37FP xRKqzDA0EA mZ04Cs4CVF2GjrceVbNAUNrgayC68OYAnQSnSLriI54R8XuSaIdw/H wYHUp04ldRcpUjzJhfF41yczW7w5qXSCa6zV2KFe1VnAPPk XVgfZoJaB4G08ZGYIptxQiNnb8HfujJjPMXDhJ79PZfpShyscBnRXrii4cYGnXRHzvDquqQ7xndy1bRjYNVdn39R8gIPN5FTTuoveDKmvo4IxXD5UVqe3hq5oUf1pxQgANHovXc82QnhKB4c6sZAFZqYFLOKNlVNFnjv8pkIoeGEUFj2k9dZlZxRLHSua vYIyIOg 5qIap639k3bjSC51DCJ1rQ3ZD0as2VKTd/vyBWPTglDJdeTKemggLSZwv1qGBbAJxEYKjCEoZkFaP nfhY6Pn42DbmRDZKM06AVDXMQcvWazeEpNqCQdHFir4jSolL32X6qu7nlGyo u0q8Ws~
Headers
host=myserver.acme.com:8443
user-agent=Mozilla/5.0 (Windows NT 6.1; WOW64; rv:48.0) Gecko/20100101 Firefox/48.0
accept=text/html,application/xhtml xml,application/xml;q=0.9,*/*;q=0.8
accept-language=en-US,en;q=0.5
accept-encoding=gzip, deflate, br
referer=https://myserver.acme.com:8443/osp/a/idm/auth/oauth2/grant?response_type=code&client_id=rbpm&state=020288ae-9ef9-49ac-9a14-940fddb28e6f&redirect_uri=https://10.1.1.2:8443/IDMProv/oauth
cookie=(see above)
connection=keep-alive
upgrade-insecure-requests=1
Session
Id: FC02C133431DD08F292D3A69E1FDEF65
Last Accessed Time: 1471021370266
Parameters
privateId
client_id
irdpkg
Attributes
javax.servlet.request.ssl_session
javax.servlet.request.key_size
javax.servlet.request.ssl_session_mgr
javax.servlet.request.cipher_suite
javax.servlet.request.ssl_session_id
OSPRequestContext
[OSP] 2016-08-12T13:02:50.433-0400
Level: TRACE
Code: com.novell.osp.servlet.OSPServlet.process() [213] thread=http-bio-8443-exec-4
Message:
Class: OSPRequestContext
HttpServletResponse exists.
Http request type: GET
Request number: 6
Tenant: idm
Service: idm(id=auth)
Path element count: 2
Element: oauth2
Element: authcodecontinue
Override locale: en_US
[OIDP] 2016-08-12T13:02:50.433-0400
Level: TRACE
Code: com.novell.oidp.servlets.handler.AuthenticationServiceRequestHandler.resolveHandler() [181] thread=http-bio-8443-exec-4
Message: IDP oauth2 handler to process request received for authcodecontinue
[OIDP] 2016-08-12T13:02:50.440-0400
Level: TRACE
Code: com.novell.oidp.session.authentication.NIDPAuthentication.getAuthenticatedContext() [352] thread=http-bio-8443-exec-4
Message:
There are 0 existing NIDPAuthnContext objects contained inside of this NIDPAuthentication
No match. Returning null
[OIDP] 2016-08-12T13:02:50.440-0400
Level: TRACE
Code: com.novell.oidp.session.authentication.NIDPAuthentication.addAuthnContext() [373] thread=http-bio-8443-exec-4
Message:
Class: NIDPLocalAuthentication
Identity Id: df880dc9f1eb6742c7a3df880dc9f1eb
Display Text: np-contract-{$default-card}
Consumed: true
AuthnContext Objects:
Class: NIDPAuthnContext
Auth Instant08-12 13:02:50 0259 (1471021370259) (Elapsed: 181)
LastUsedTime08-12 13:02:50 0263 (1471021370263) (Elapsed: 177)
Mag Context: false
Class: AuthenticationContract
Id: np-contract
Name: User Name/Password Login
URI: idm:login:user:np
Trust Level: 0
Timeout: 0
Check Trust Level: false
Show Pwd Expired UI: true
Remote: false
Default: true
Executable: Name/Password Method(id=np-method)
Executable: SSPR Check Method(id=sspr-checks-method)
Executable: (Auto) IDM Admin Role Mapping Method(id={$auto}-admin-role-mapping-method)
Authentication Card: User Name/Password Login-{$default-card}(id=np-contract-{$default-card})
[OIDP] 2016-08-12T13:02:50.441-0400
Level: TRACE
Code: com.novell.oidp.session.NIDPSession.setAuthPrincipal() [1290] thread=http-bio-8443-exec-4
Message:
Setting the Authenticated Principal
Candidate Principal:
Type: LDAPPrincipal
GUID: df880dc9f1eb6742c7a3df880dc9f1eb
User Identifier: cn=uaadmin,ou=admins,ou=system,o=acme
Authentication Source: bisadus
Cached Attribute Count: 0
Existing Principal Found:
Type: LDAPPrincipal
GUID: df880dc9f1eb6742c7a3df880dc9f1eb
User Identifier: cn=uaadmin,ou=admins,ou=system,o=acme
Authentication Source: bisadus
Cached Attribute Count: 0
Candidate Principal cached but not added to session 0e969fa98e544d28af92096f2ca4ea13-8ee7eae3a3effbfae6
[OIDP] 2016-08-12T13:02:50.441-0400
Level: TRACE
Code: com.novell.oidp.session.NIDPSession.<init>() [439] thread=http-bio-8443-exec-4
Message: Built Session from XML: id: 0e969fa98e544d28af92096f2ca4ea13-8ee7eae3a3effbfae6-CX, Type: PERSISTENT
[OIDP] 2016-08-11T20:07:34.818-0400
Level: INFO
Code: com.novell.oidp.session.NIDPSession.logout() [1048] thread=localhost-startStop-1
Message: Session Logged Out
[OIDP] 2016-08-12T13:02:50.442-0400
Level: TRACE
Code: com.novell.oidp.session.NIDPSession.isAuthenticated() [2520] thread=http-bio-8443-exec-4
Message:
Session Id: 0e969fa98e544d28af92096f2ca4ea13-8ee7eae3a3effbfae6
Initial consumed authentications count: 1
Removing timed out authentication context: 1471021370259
Last used: 08-12 13:02:50 0263
Context timeout: -1294967296
Elapsed since timeout: 1294967474
The Local Authentication was authenticated, but it must have timed out!
Local: false
Remote: false
An AuthnContext timed out and was removed such that the session is no longer authenticated! Logging out session!
Authenticated: false
Removed system administrator role: system::IDPAdministrator
[OIDP] 2016-08-12T13:02:50.443-0400
Level: TRACE
Code: com.novell.oidp.session.NIDPSession.getData() [604] thread=http-bio-8443-exec-4
Message: Created a new id for a NIDPSessionData object: 2
[OIDP] 2016-08-12T13:02:50.443-0400
Level: TRACE
Code: com.novell.oidp.session.NIDPSession.getSessionData() [630] thread=http-bio-8443-exec-4
Message: Created NIDPSessionData with id: 2
[OIDP] 2016-08-12T13:02:50.443-0400
Level: TRACE
Code: com.novell.oidp.session.NIDPSession.getSessionData() [646] thread=http-bio-8443-exec-4
Message: Retrieved existing NIDPSessionData with id: 2
[OIDP] 2016-08-12T13:02:50.443-0400
Level: TRACE
Code: com.netiq.oidpp.oauth2.handler.InterRequestPackage.<init>() [243] thread=http-bio-8443-exec-4
Message:
Inter-request data:
Package Id: 1471021339493-1870600049
Searching for cookie named x-oidp-oauth2-1471021339493-1870600049 among 3 cookies in the request.
Found cookie named x-oidp-oauth2-1471021339493-1870600049. Value has 408 characters.
Base64 decoded cookie value to 304 encrypted bytes.
Decrypted decoded cookie value to 288 bytes.
Plain text cookie value has 288 characters.
[OIDP] 2016-08-12T13:02:50.444-0400
Level: TRACE
Code: com.novell.oidp.authentication.AuthenticationManager.getCard() [331] thread=http-bio-8443-exec-4
Message: Did not search for "null" or "empty string" card id.
[OIDP] 2016-08-12T13:02:50.444-0400
Level: TRACE
Code: com.netiq.oidpp.oauth2.handler.BrowserHandlerBase.handleError() [583] thread=http-bio-8443-exec-4
Message: Redirect error: Missing authenticated principal.
[OIDP] 2016-08-12T13:02:50.444-0400
Level: INFO
Code: com.netiq.oidpp.oauth2.handler.TokenRequestHandlerBase.auditTokenCreation() [280] thread=http-bio-8443-exec-4
Message: IssueOAuthCode
[OIDP] 2016-08-12T13:02:50.445-0400
Level: TRACE
Code: com.netiq.oidpp.oauth2.handler.InterRequestPackage.cleanup() [322] thread=http-bio-8443-exec-4
Message:
Deleting OAuth2 Inter-request data package cookie: 1471021339493-1870600049
Setting cookie named x-oidp-oauth2-1471021339493-1870600049 with a cookie value of 0 characters into the responset.
Added cookie to request with:
Cookie Domain: myserver.acme.com
Path: /
MaxAge (Seconds): 0
Secure: true
[OSP] 2016-08-12T13:02:50.447-0400
Level: TRACE
Code: com.novell.osp.UIResponder$Response.setResponse() [1345] thread=http-bio-8443-exec-4
Message:
Response: TARGET
Target: https://10.1.1.2:8443/IDMProv/oauth?error=access_denied&state=020288ae-9ef9-49ac-9a14-940fddb28e6f
Removing timed out authentication context: 1471021370259
Last used: 08-12 13:02:50 0263
Context timeout: -1294967296
Elapsed since timeout: 1294967474
The Local Authentication was authenticated, but it must have timed out!