IBM Support

PM99516: AUTHENTICATION FOR LDAP USERS FAILS FOR OSLC QUERIES IF THERE ISANY GROUP DEFINED AS RESTRICTED.

Subscribe

You can track all active APARs for this component.

 

APAR status

  • Closed as program error.

Error description

  • When when an LDAP CQ user tries to run an OSLC query the
    authentication fails if there is any group set as restricted in
    the CQWeb server to which the OSLC queries are directed.
    The dialog box prompting for user name and password keeps on
    reappearing even if the correct credentials are used.
    As a result the user is unable to run any OSLC query. This
    behavior exists in CQ versions 7.1.2.12, 8.0.0.8 and 8.0.1.1.
    
    Steps to reproduce:
    
    - In CQWeb Site Administration -? Site Configuration -? Security
    Options, enter group name in the  'Restricted User Groups' text
    box and apply the changes
    - Log out from CQWeb and run any OSLC query, such as
    (substituting the appropriate DBSET and USERDB values)
    http://localhost/cqweb/oslc/repo/DBSET/db/USERDB
    - When prpmpted for authentication, enter the valid credentials
    for an LDAP authenticated user
    - Note that the authentication dialog box returns, even if the
    credentials are correct
    

Local fix

Problem summary

  • ****************************************************************
    * USERS AFFECTED:                                              *
    * ClearQuest Web OSLC                                          *
    ****************************************************************
    * PROBLEM DESCRIPTION:                                         *
    * When a ClearQuest LDAP user tries to run an OSLC query, the  *
    * authentication fails if there is any group set as Restricted *
    * on the CQ Web server to which the OSLC queries are directed. *
    ****************************************************************
    * RECOMMENDATION:                                              *
    ****************************************************************
    

Problem conclusion

  • A fix is available in ClearQuest 8.0.0.15 and 8.0.1.8.
    When a ClearQuest LDAP user tries to run an OSLC query, the
    authentication succeeds when there is a group set as Restricted
    on the CQ Web server.
    

Temporary fix

Comments

APAR Information

  • APAR number

    PM99516

  • Reported component name

    CLEARQUEST WIN

  • Reported component ID

    5724G3600

  • Reported release

    712

  • Status

    CLOSED PER

  • PE

    NoPE

  • HIPER

    NoHIPER

  • Special Attention

    NoSpecatt

  • Submitted date

    2013-10-21

  • Closed date

    2015-06-29

  • Last modified date

    2015-06-29

  • APAR is sysrouted FROM one or more of the following:

  • APAR is sysrouted TO one or more of the following:

Fix information

  • Fixed component name

    CLEARQUEST WIN

  • Fixed component ID

    5724G3600

Applicable component levels

  • R800 PSY

       UP

  • R801 PSY

       UP

[{"Line of Business":{"code":"LOB36","label":"IBM Automation"},"Business Unit":{"code":"BU053","label":"Cloud \u0026 Data Platform"},"Product":{"code":"SSSH5A","label":"Rational ClearQuest"},"Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"7.1.2"}]

Document Information

Modified date:
16 September 2021