IBM Support

IT04764: DATAPOWER DOES NOT HONOR WILDCARD SCOPE FOR OAUTH CLIENT PROFILE

Subscribe

You can track all active APARs for this component.

 

APAR status

  • Closed as program error.

Error description

  • Client with valid token making a request against a resource
    (scope) might fail authorization when OAuth Client profile is
    defined with wildcard scope.
    This functionality works as expected with DataPower firmware
    version 5.  The same configuration does not work if you migrate
    to Version 6.0.0, 6.0.1 or 7.0.0 .
    

Local fix

Problem summary

  • A resource path scoped with a wildcard might not be honored in
    an OAuth client profile.
    

Problem conclusion

  • Fix is available in 6.0.0.10, 6.0.1.6, 7.0.0.3 and 7.1.0.0.
    

Temporary fix

Comments

APAR Information

  • APAR number

    IT04764

  • Reported component name

    DPWR SRV GTWAY

  • Reported component ID

    DP905XG45

  • Reported release

    700

  • Status

    CLOSED PER

  • PE

    NoPE

  • HIPER

    NoHIPER

  • Special Attention

    NoSpecatt

  • Submitted date

    2014-10-06

  • Closed date

    2014-11-12

  • Last modified date

    2014-11-21

  • APAR is sysrouted FROM one or more of the following:

  • APAR is sysrouted TO one or more of the following:

Fix information

  • Fixed component name

    DPWR SRV GTWAY

  • Fixed component ID

    DP905XG45

Applicable component levels

  • R600 PSY

       UP

  • R601 PSY

       UP

  • R700 PSY

       UP

  • R710 PSY

       UP

[{"Business Unit":{"code":"BU048","label":"IBM Software"},"Product":{"code":"SSNR47","label":"WebSphere DataPower Service Gateway XG45"},"Component":"","ARM Category":[],"Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"7.0.0","Edition":"","Line of Business":{"code":"LOB15","label":"Integration"}}]

Document Information

Modified date:
21 November 2014