xum

Absent Member.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Email to a Friend
- Report Inappropriate Content
2018-07-10
21:50
589 views
Inject authentication header password error
Hi
I config inject authentication header policy.
I set username is ldap user name
password is ldap password
but the policy can't success SSO
When I set username is ldap user name
password is sting and input clear text password, the SSO is ok;
When I set ldap attribute company with the clear text password, the SSO is not ok;
So, Can support?
My AM version:4.2sp1
application is :Windchill(PDM,epicca)
I config inject authentication header policy.
I set username is ldap user name
password is ldap password
but the policy can't success SSO
When I set username is ldap user name
password is sting and input clear text password, the SSO is ok;
When I set ldap attribute company with the clear text password, the SSO is not ok;
So, Can support?
My AM version:4.2sp1
application is :Windchill(PDM,epicca)
7 Replies
ScorpionSting

Absent Member.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Email to a Friend
- Report Inappropriate Content
2018-07-10
23:11
xum;2483786 wrote:
Hi
I config inject authentication header policy.
I set username is ldap user name
password is ldap password
but the policy can't success SSO
When I set username is ldap user name
password is sting and input clear text password, the SSO is ok;
When I set ldap attribute company with the clear text password, the SSO is not ok;
So, Can support?
My AM version:4.2sp1
application is :Windchill(PDM,epicca)
Can you export the II policy so we can see it?
Visit my Website for links to Cool Solution articles.


Knowledge Partner
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Email to a Friend
- Report Inappropriate Content
2018-07-10
23:19
On 11-07-2018 6:54 AM, xum wrote:
>
> Hi
> I config inject authentication header policy.
> I set username is ldap user name
> password is ldap password
> but the policy can't success SSO
> When I set username is ldap user name
> password is sting and input clear text password, the SSO is
> ok;
> When I set ldap attribute company with the clear text password, the SSO
> is not ok;
> So, Can support?
> My AM version:4.2sp1
> application is :Windchill(PDM,epicca)
>
>
Probably best to check the logs from your app to check why its not happy with the supplied credentials.
--
Cheers,
Edward
>
> Hi
> I config inject authentication header policy.
> I set username is ldap user name
> password is ldap password
> but the policy can't success SSO
> When I set username is ldap user name
> password is sting and input clear text password, the SSO is
> ok;
> When I set ldap attribute company with the clear text password, the SSO
> is not ok;
> So, Can support?
> My AM version:4.2sp1
> application is :Windchill(PDM,epicca)
>
>
Probably best to check the logs from your app to check why its not happy with the supplied credentials.
--
Cheers,
Edward
whitesocks

Absent Member.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Email to a Friend
- Report Inappropriate Content
2018-07-11
10:50
Hi
I set form fill and catpture network flow,I confirm the policy can't get password and input or inject for policy.
but i login nidp,the authentication is ok.
So,Will I do?
thanks
I set form fill and catpture network flow,I confirm the policy can't get password and input or inject for policy.
but i login nidp,the authentication is ok.
So,Will I do?
thanks


Knowledge Partner
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Email to a Friend
- Report Inappropriate Content
2018-07-11
11:50
On 11-07-2018 7:54 PM, whitesocks wrote:
>
> Hi
> I set form fill and catpture network flow,I confirm the policy can't get
> password and input or inject for policy.
> but i login nidp,the authentication is ok.
> So,Will I do?
> thanks
>
>
Any change you can provide the login page of this application here?
--
Cheers,
Edward
>
> Hi
> I set form fill and catpture network flow,I confirm the policy can't get
> password and input or inject for policy.
> but i login nidp,the authentication is ok.
> So,Will I do?
> thanks
>
>
Any change you can provide the login page of this application here?
--
Cheers,
Edward
whitesocks

Absent Member.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Email to a Friend
- Report Inappropriate Content
2018-07-12
05:22
edmaa;2483832 wrote:
On 11-07-2018 7:54 PM, whitesocks wrote:
>
> Hi
> I set form fill and catpture network flow,I confirm the policy can't get
> password and input or inject for policy.
> but i login nidp,the authentication is ok.
> So,Will I do?
> thanks
>
>
Any change you can provide the login page of this application here?
--
Cheers,
Edward
I test,execute sso policy,the policy get user store for ad;
I build two userstore one is for AD ,one is for ed.I check the document ,If use the kerberos must create two user store. Will I do?
ScorpionSting

Absent Member.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Email to a Friend
- Report Inappropriate Content
2018-07-12
06:10
whitesocks;2483893 wrote:
I test,execute sso policy,the policy get user store for ad;
I build two userstore one is for AD ,one is for ed.I check the document ,If use the kerberos must create two user store. Will I do?
You can do Kerberos against any LDAP store, as long as it can perform a lookup with the information provided by the Kerberos ticket - plenty of posts in this forum about Kerberos and LDAP stores
Visit my Website for links to Cool Solution articles.


Knowledge Partner
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Email to a Friend
- Report Inappropriate Content
2018-07-12
22:09
On 12-07-2018 2:24 PM, whitesocks wrote:
>
> I test,execute sso policy,the policy get user store for ad;
> I build two userstore one is for AD ,one is for ed.I check the document
> ,If use the kerberos must create two user store. Will I do?
You dont need 2 user stores, not even sure where you get that information from.
--
Cheers,
Edward
>
> I test,execute sso policy,the policy get user store for ad;
> I build two userstore one is for AD ,one is for ed.I check the document
> ,If use the kerberos must create two user store. Will I do?
You dont need 2 user stores, not even sure where you get that information from.
--
Cheers,
Edward