Authorization And Identity Injection Issues; Authorization And Identity Injection Error Messages - Novell ACCESS MANAGER 3.1 SP1 - GATEWAY GUIDE Manual

Access gateway guide
Hide thumbs Also See for ACCESS MANAGER 3.1 SP1 - GATEWAY GUIDE:
Table of Contents

Advertisement

When a Form Fill policy succeeds and the authentication to the Web server fails, the Web server
redirects the browser to its authentication page again and again, if auto-submit is enabled. In such a
situation, if there is no appropriate login-failure action configured in the policy, the browser "spins"
endlessly.
If this happens, do the following:
Kill the browser session. If you are unable to do this, run the following commands to restart the
Linux Access Gateway:
/etc/init.d/novell-vmc stop
/etc/init.d/novell-vmc start
If the issue is with a Credential Profile with LDAP attributes, verify which LDAP attributes are
required by the Web server, and create the appropriate entries in the Form Fill policy.
If the issue is with shared secrets, delete the corresponding values from the Secret Store. If it is
not possible to delete the value, modify the corresponding policy to use a different or a new
custom attribute or shared secret attribute. For more information on modifying the policy, see
"Implementing Form Fill
Guide.

7.9 Authorization and Identity Injection Issues

Section 7.9.1, "Authorization and Identity Injection Error Messages," on page 206
Section 7.9.2, "Identity Injection Failures," on page 207
Section 7.9.3, "Identity Injection Problems When Using a Password Management Service," on
page 207

7.9.1 Authorization and Identity Injection Error Messages

If you have already configured the Identity Injection policies, you might receive the following errors
while trying to send a browser request:
Service provider is in halted state. Please contact your administrator to
restart Service Provider from Administrator Console.
Policy engine is sending invalid response. Please contact your
administrator to restart Service Provider from Administrator Console.
Unable to process your request.
Unable to process your request due to parseXML failure.
These errors indicate that the Embedded Service Provider is down. Every Identity Injection policy
has a policy ID, which is sent to the Access Gateway by the Embedded Service Provider. If the
Embedded Service Provider is down, the Access Gateway does not get the policy ID, and an error is
thrown. Restart the Embedded Service Provider from the Administration Console as follows:
1 In the Administration Console, click Devices > Access Gateways.
2 Select the server, then click Actions.
3 Click Service Provider > Restart Service Provider.
4 Click OK.
206 Novell Access Manager 3.1 SP1 Access Gateway Guide
Policies" in the
Novell Access Manager 3.1 SP1 Policy Management

Advertisement

Table of Contents
loading

Table of Contents