IBM Support

PI89606: JASPIC USER GROUP INFORMATION IS LOST WHEN USING THE JASPICSESSION.

Subscribe

You can track all active APARs for this component.

 

APAR status

  • Closed as program error.

Error description

  • JASPIC user group information is lost when using the
    jaspicSession.
    

Local fix

  • n/a
    

Problem summary

  • ****************************************************************
    * USERS AFFECTED:  All users of IBM WebSphere Application      *
    *                  Server                                      *
    *                  V9.0.                                       *
    ****************************************************************
    * PROBLEM DESCRIPTION: In a JASPI environment with             *
    *                      jaspicSession                           *
    *                      cookie enabled, requests utilizing      *
    *                      single                                  *
    *                      signon (SSO) may fail access.           *
    ****************************************************************
    * RECOMMENDATION:                                              *
    ****************************************************************
    The user authenticates via a JASPIC Provider. Users group
    information is utilized for resource access. The jaspicSession
    cookie is utilized to persist the users group information across
    multiple requests. At some point the user fails authorization
    checks. Group information for the user has been lost.
    

Problem conclusion

Temporary fix

Comments

APAR Information

  • APAR number

    PI89606

  • Reported component name

    WEBSPHERE APP S

  • Reported component ID

    5724J0800

  • Reported release

    900

  • Status

    CLOSED PER

  • PE

    NoPE

  • HIPER

    NoHIPER

  • Special Attention

    NoSpecatt / Xsystem

  • Submitted date

    2017-10-31

  • Closed date

    2018-03-07

  • Last modified date

    2018-03-07

  • APAR is sysrouted FROM one or more of the following:

  • APAR is sysrouted TO one or more of the following:

Fix information

  • Fixed component name

    WEBSPHERE APP S

  • Fixed component ID

    5724J0800

Applicable component levels

  • R900 PSY

       UP

[{"Business Unit":{"code":"BU053","label":"Cloud \u0026 Data Platform"},"Product":{"code":"SSEQTP","label":"WebSphere Application Server"},"Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"900","Line of Business":{"code":"LOB36","label":"IBM Automation"}}]

Document Information

Modified date:
18 October 2021