IBM Support

PI82308: OpenID Connect RP loses URL fragments during the login process

Download


Abstract

The OIDC Relying Party TAI loses URL fragments during the login process.

Download Description

THIS FIX HAS BEEN SUPERSEDED BY THE A LATER IFIX
This fix has been superseded by a fix for another APAR. For information on how to obtain the latest OpenID Connect runtime that includes this APAR, see the technote Obtaining WebSphere OpenID Connect (OIDC) latest version.


PI82308 resolves the following problem:

ERROR DESCRIPTION:
The OpenId Connect (OIDC) Relying Party (RP) TAI loses fragments in the request to a protected resource.

For instance, if a request is made to http://abc.com/action.html#one, after login, the user will be redirected to http://abc.com/action.html.

PROBLEM SUMMARY:
The OIDC TAI does not handle URL fragments properly.

PROBLEM CONCLUSION:
The OIDC TAI is updated to ensure that original URLs on requests made to a protected resource are preserved.

The fix for this APAR is currently targeted for inclusion in fix pack 8.0.0.14, 8.5.5.13 and 9.0.0.6. Please refer to the Recommended Updates page for delivery information:
http://www.ibm.com/support/docview.wss?rs=180&uid=swg27004980

Keywords: IBMWL3WSS, OIDC


THIS FIX HAS BEEN SUPERSEDED BY THE A LATER IFIX
This fix has been superseded by a fix for another APAR. For information on how to obtain the latest OpenID Connect runtime that includes this APAR, see the technote Obtaining WebSphere OpenID Connect (OIDC) latest version.


On

Technical Support

Contact IBM Support using SR (http://www.ibm.com/software/support/probsub.html), visit the WebSphere Application Server support web site (http://www.ibm.com/software/webservers/appserv/was/support/), or contact 1-800-IBM-SERV (U.S. only).

[{"Product":{"code":"SSEQTP","label":"WebSphere Application Server"},"Business Unit":{"code":"BU053","label":"Cloud & Data Platform"},"Component":"General","Platform":[{"code":"PF002","label":"AIX"}],"Version":"9.0;8.5.5;8.0","Edition":"Base;Network Deployment;Single Server","Line of Business":{"code":"LOB45","label":"Automation"}}]

Document Information

Modified date:
15 June 2018

UID

swg24044010