IBM Support

JR40416: CMVC 211862 - ALLOW ADDITIONAL VIEWS TO BE EXEMPTED FROM REDIRECTING WHEN THE USERS'S PASSWORD IS INVALID

Subscribe

You can track all active APARs for this component.

 

APAR status

  • Closed as program error.

Error description

  • If Password Validation is enabled and a user attempts to access
    a secure page with an expired password they are redirected to
    the ChangePassword view. Some views are exempted from this
    redirect and are listed in a properties file contained in a
    WebSphere Commerce JAR file. Changes to this exemption list
    could be lost if the jar is updated by an APAR, fix pack or
    features pack, making it difficult to add additional views to
    the exemption list.
    

Local fix

Problem summary

  • USERS AFFECTED:
    WebSphere Commerce users who are using Password Invalidation and
    have a business requirement to exempt additional views from
    being redirected when using an expired password.
    
    PROBLEM ABSTRACT:
    Only the default views that are included in an out-of-the-box
    properties file can be exempted from redirecting when the user's
    password is invalid.
    
    BUSINESS IMPACT:
    Shoppers may not be automatically redirected to the
    ChangePassword view if they are using an expired password
    
    RECOMMENDATION:
    

Problem conclusion

  • An additional properties file, "
    PasswordInvalidationExemptionExtension.properties" can be
    created and added to the WC classpath which will allow
    additional views to be exempted.
    -------------------------------------------------------------
    The latest available maintenance information can be obtained
    from the Recommended Fixes for WebSphere Commerce technote:
    http://www.ibm.com/support/docview.wss?rs=3046&uid=swg21261296
    

Temporary fix

Comments

APAR Information

  • APAR number

    JR40416

  • Reported component name

    WC BUS EDITION

  • Reported component ID

    5724I3800

  • Reported release

    700

  • Status

    CLOSED PER

  • PE

    NoPE

  • HIPER

    NoHIPER

  • Special Attention

    NoSpecatt

  • Submitted date

    2011-08-18

  • Closed date

    2011-10-21

  • Last modified date

    2011-10-21

  • APAR is sysrouted FROM one or more of the following:

  • APAR is sysrouted TO one or more of the following:

Fix information

  • Fixed component name

    WC BUS EDITION

  • Fixed component ID

    5724I3800

Applicable component levels

  • R700 PSY

       UP

[{"Business Unit":{"code":"BU059","label":"IBM Software w\/o TPS"},"Product":{"code":"SSYSYL","label":"WebSphere Commerce Enterprise"},"Component":"","ARM Category":[],"Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"7.0","Edition":"","Line of Business":{"code":"","label":""}}]

Document Information

Modified date:
21 October 2011