APAR status
Closed as program error.
Error description
While using MTOM for an API that is protected by an OAuth Provider, the request.headers.authorization context variable is not set and not available in the context for api-security step to validate the authentication. In this case, if on api-security with OAuth security enabled DataPower Gateway is trying to read request.headers.authorization to get the token - that will fail for MTOM calls, because that variable is not there.
Local fix
N/A
Problem summary
OAUTH controller does not correctly handle header for mtom messages.
Problem conclusion
Fix is available in 10.0.1.9 and 10.5.0.1.
Temporary fix
Comments
APAR Information
APAR number
IT40689
Reported component name
DATAPOWER
Reported component ID
DP1234567
Reported release
A0X
Status
CLOSED PER
PE
NoPE
HIPER
NoHIPER
Special Attention
NoSpecatt / Xsystem
Submitted date
2022-04-20
Closed date
2022-07-23
Last modified date
2022-09-08
APAR is sysrouted FROM one or more of the following:
APAR is sysrouted TO one or more of the following:
Fix information
Fixed component name
DATAPOWER
Fixed component ID
DP1234567
Applicable component levels
[{"Business Unit":{"code":"BU059","label":"IBM Software w\/o TPS"},"Product":{"code":"SS9H2Y","label":"IBM DataPower Gateways"},"Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"A0X","Line of Business":{"code":"LOB45","label":"Automation"}}]
Document Information
Modified date:
08 September 2022