PasswordReplayFilter sends invalid requests.

This topic has 1 voice and 0 replies.

  • Author
    Posts
  • #26541
     takano.sha
    Participant

    I am using PasswordReplayFilter with OpenIG4.0 .

    Automatic login succeeded with PasswordReplayFilter,
    The behavior after login is incorrect and in trouble.

    I captured the packet after login with tcpdump.
    OpenIG was sending extra requests (two more times) to the service provider as follows:

    ——————–
    Browser->OpenAM agent/OpenIG

    OpenAM agent->(Request)->OpenAM (several times)
    OpenAM agent<-(Response)<-OpenAM …All Code 200

    OpenIG->(Request)->ServiceProvider …POST with Body Content
    OpenIG<-(Response)<-ServiceProvider …Code 200

    *Unnecessary request*
    OpenIG->(Request)->ServiceProvider …POST with no Body Content
    OpenIG<-(Response)<-ServiceProvider …Code 415 Unsupported Media Type

    *Unnecessary request*
    OpenIG->(Request)->ServiceProvider …POST with no Body Content
    OpenIG<-(Response)<-ServiceProvider …Code 415 Unsupported Media Type

    Browser<-OpenAM agent/OpenIG …Code 415 Unsupported Media Type
    ——————–

    Why are incorrect requests being sent?
    Is there a solution?

Viewing 1 post (of 1 total)

You must be logged in to reply to this topic.

©2020 ForgeRock - we provide an identity and access platform to secure every online relationship for the enterprise market, educational sector and even entire countries. Click to view our privacy policy and terms of use.

Log in with your credentials

Forgot your details?