IBM Support

LI80981: NATIVE APIC OAUTH SERVER URL ENCODING PASSWORDS

 

APAR status

  • Closed as program error.

Error description

  • Username and Password in the body of a OAuth Password grant
    request is correctly UTF-8 decoded with this fix. Previously
    the body in the OAuth Password grant request was not correctly
    UTF-8 decoded before being used to form the Authorization
    Bearer Header
    

Local fix

Problem summary

  • Users using password with characters were not getting their
    password correctly decoded in DP before sending the request to
    LDAP registry when used within OAuth Provider.
    

Problem conclusion

  • Fixed the decoding issue that datapower gateway was having with
    during Authentication URL request within an OAuth Provider's
    user security options. User of APIGW should see correct behavior
    in 2018.4.1.7 and beyond.
    

Temporary fix

Comments

APAR Information

  • APAR number

    LI80981

  • Reported component name

    API CONNECT ENT

  • Reported component ID

    5725Z2201

  • Reported release

    18X

  • Status

    CLOSED PER

  • PE

    NoPE

  • HIPER

    NoHIPER

  • Special Attention

    NoSpecatt / Xsystem

  • Submitted date

    2019-07-11

  • Closed date

    2020-07-27

  • Last modified date

    2020-07-27

  • APAR is sysrouted FROM one or more of the following:

  • APAR is sysrouted TO one or more of the following:

Fix information

  • Fixed component name

    API CONNECT ENT

  • Fixed component ID

    5725Z2201

Applicable component levels

[{"Business Unit":{"code":"BU059","label":"IBM Software w\/o TPS"},"Product":{"code":"SSMNED","label":"IBM API Connect"},"Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"18X","Line of Business":{"code":"LOB45","label":"Automation"}}]

Document Information

Modified date:
11 September 2023