IBM Verify

IBM Verify

Join this online user group to communicate across Security product users and IBM experts by sharing advice and best practices with peers and staying up to date regarding product enhancements.

 View Only
  • 1.  Problem with OAuth access control.

    Posted 05/17/19 10:03 AM
    Hi,

    I have an issue which i have made a PMR for but maybe some have a clue on how to solve it.

    I have an access policy that works fine in secure domain, but the same policy fails (403) in an other domain.
    I get this in the message log from the webseal.

    "DPWBA0308W The header key name is missing for the app_context_data key: AZN_EAS_POP_LOCATION_ATTRIBUTE "

    I have tried googling both AZN_EAS_POP_LOCATION_ATTRIBUTE and DPWBA0308W but cannot find any useful information regarding them.

    ------------------------------
    Regards Mikael
    ------------------------------


  • 2.  RE: Problem with OAuth access control.

    Posted 07/15/19 03:28 PM

    Hi Mikael, 

    How are you using OAuth on WebSEAL? Are you using oauth-auth configured in the [oauth] stanza, or the legacy oauth-eas

    Thank you



    ------------------------------
    Leo Farrell
    ------------------------------



  • 3.  RE: Problem with OAuth access control.

    Posted 07/19/19 02:35 AM
    ​Hi @Leo Farrell

    We use oauth-auth and the issue after some investigation was that special-eas = trigger_rba_eas was not set.​​​

    ------------------------------
    Regards Mikael
    ------------------------------