IBM Support

PM61371: SESN0008E ERROR WHEN USER LOGS OUT

Fixes are available

7.0.0.25: WebSphere Application Server V7.0 Fix Pack 25
7.0.0.27: WebSphere Application Server V7.0 Fix Pack 27
7.0.0.29: WebSphere Application Server V7.0 Fix Pack 29
7.0.0.31: WebSphere Application Server V7.0 Fix Pack 31
7.0.0.27: Java SDK 1.6 SR13 FP2 Cumulative Fix for WebSphere Application Server
7.0.0.33: WebSphere Application Server V7.0 Fix Pack 33
7.0.0.35: WebSphere Application Server V7.0 Fix Pack 35
7.0.0.37: WebSphere Application Server V7.0 Fix Pack 37
7.0.0.39: WebSphere Application Server V7.0 Fix Pack 39
7.0.0.41: WebSphere Application Server V7.0 Fix Pack 41
7.0.0.43: WebSphere Application Server V7.0 Fix Pack 43
7.0.0.45: WebSphere Application Server V7.0 Fix Pack 45
7.0.0.25: Java SDK 1.6 SR11 Cumulative Fix for WebSphere Application Server
7.0.0.27: Java SDK 1.6 SR12 Cumulative Fix for WebSphere Application Server
7.0.0.29: Java SDK 1.6 SR13 FP2 Cumulative Fix for WebSphere Application Server
7.0.0.45: Java SDK 1.6 SR16 FP60 Cumulative Fix for WebSphere Application Server
7.0.0.31: Java SDK 1.6 SR15 Cumulative Fix for WebSphere Application Server
7.0.0.35: Java SDK 1.6 SR16 FP1 Cumulative Fix for WebSphere Application Server
7.0.0.37: Java SDK 1.6 SR16 FP3 Cumulative Fix for WebSphere Application Server
7.0.0.39: Java SDK 1.6 SR16 FP7 Cumulative Fix for WebSphere Application Server
7.0.0.41: Java SDK 1.6 SR16 FP20 Cumulative Fix for WebSphere Application Server
7.0.0.43: Java SDK 1.6 SR16 FP41 Cumulative Fix for WebSphere Application Server
Obtain the fix for this APAR.

Subscribe

You can track all active APARs for this component.

APAR status

  • Closed as program error.

Error description

  • When the session security feature is turned on (which is the
    default in WebSphere Application Server Version 8.0), and
    multiple sessions are using the same user ID, when a user logs
    out of one session, another session might receive an error
    when a different user who has logged in with the same user ID
    logs out: SESN0008E: A user authenticated as anonymous has
    attempted to access a session owned by user:  {<user>}
    

Local fix

Problem summary

  • ****************************************************************
    * USERS AFFECTED:  All users of IBM WebSphere Application      *
    *                  Server running with session-security        *
    *                  integration enabled.                        *
    ****************************************************************
    * PROBLEM DESCRIPTION: When the subject is not found in the    *
    *                      security authentication cache during    *
    *                      logout, SESN0008E error is logged.      *
    ****************************************************************
    * RECOMMENDATION:                                              *
    ****************************************************************
    When the subject is not found in the authentication cache, the
    proper identity of the caller is not established and that
    results in the SESN00008E error.
    This situation can occur for one of several reasons.  1)
    Authentication cache is disabled.  2) Subject has timed out of
    authentication cache. 3) Multiple sessions with same user
    doing login and logout simultaneously.
    

Problem conclusion

  • The code was corrected to properly establish the caller's
    identity even if the subject is not found in the security
    authentication cache.
    
    APAR PM61371 is currently targeted for inclusion in
    WebSphere Application Server Fix Pack 7.0.0.25.
    
    Please refer to URL:
    //www.ibm.com/support/docview.wss?rs=404&uid=swg27006970
    for Fix Pack availability.
    

Temporary fix

Comments

APAR Information

  • APAR number

    PM61371

  • Reported component name

    WEBSPHERE FOR Z

  • Reported component ID

    5655I3500

  • Reported release

    700

  • Status

    CLOSED PER

  • PE

    NoPE

  • HIPER

    NoHIPER

  • Special Attention

    NoSpecatt

  • Submitted date

    2012-03-28

  • Closed date

    2012-06-04

  • Last modified date

    2012-11-02

  • APAR is sysrouted FROM one or more of the following:

    PM47514

  • APAR is sysrouted TO one or more of the following:

Fix information

  • Fixed component name

    WEBSPHERE FOR Z

  • Fixed component ID

    5655I3500

Applicable component levels

  • R700 PSY UK81738

       UP12/10/04 P F210

Fix is available

  • Select the PTF appropriate for your component level. You will be required to sign in. Distribution on physical media is not available in all countries.



Document information

More support for: WebSphere Application Server for z/OS
General

Software version: 7.0

Reference #: PM61371

Modified date: 02 November 2012