0 Replies Latest reply: Jul 6, 2010 4:01 AM by 807573 RSS

    cannot login in opensso admin

    807573
      Hi,
      Once a while I cannot login into opensso admin console (http://opensso.local.asyd.net:8000/opensso/UI/Login) using both amAdmin or agentadminuser.

      The opensso login admin web page can load but when try to login, it gave this message:

      exception
      javax.servlet.ServletException: AMSetupFilter.doFilter
      com.sun.identity.setup.AMSetupFilter.doFilter(AMSetupFilter.java:117)

      root cause
      com.iplanet.jato.NavigationException: Exception encountered during forward
      Root cause = [java.io.FileNotFoundException: /home/opensso/apache-tomcat-6.0.18/work/Catalina/localhost/opensso/org/apache/jsp/config/auth/default_/authException_jsp.java (Permission denied)]

      The tomcat catalina.xxxx-xx-xx.log gave this messages:
      .....
      .....
      Jul 6, 2010 2:55:01 AM org.apache.jasper.EmbeddedServletOptions <init>
      SEVERE: The scratchDir you specified: /home/opensso/apache-tomcat-6.0.18/work/Catalina/localhost/opensso is unusable.
      Jul 6, 2010 2:55:02 AM org.apache.jasper.EmbeddedServletOptions <init>
      SEVERE: The scratchDir you specified: /home/opensso/apache-tomcat-6.0.18/work/Catalina/localhost/docs is unusable.
      Jul 6, 2010 2:55:02 AM org.apache.jasper.EmbeddedServletOptions <init>
      SEVERE: The scratchDir you specified: /home/opensso/apache-tomcat-6.0.18/work/Catalina/localhost/_ is unusable.
      Jul 6, 2010 2:55:03 AM org.apache.jasper.EmbeddedServletOptions <init>
      SEVERE: The scratchDir you specified: /home/opensso/apache-tomcat-6.0.18/work/Catalina/localhost/manager is unusable.
      Jul 6, 2010 2:55:04 AM org.apache.jasper.EmbeddedServletOptions <init>
      SEVERE: The scratchDir you specified: /home/opensso/apache-tomcat-6.0.18/work/Catalina/localhost/host-manager is unusable.
      Jul 6, 2010 2:55:04 AM org.apache.coyote.http11.Http11Protocol start
      INFO: Starting Coyote HTTP/1.1 on http-8000
      Jul 6, 2010 2:55:04 AM org.apache.coyote.http11.Http11Protocol start
      INFO: Starting Coyote HTTP/1.1 on http-8001
      Jul 6, 2010 2:55:04 AM org.apache.catalina.startup.Catalina start
      INFO: Server startup in 118365 ms

      --------------------------------------------------------------------
      The client web page (http://opensso.local.asyd.net:8081/mini-agentsample/index.jsp) also cannot load at all (browser gives message 'Unable to connect'), meaning cannot start the web client tomcat instance successfully (I am using 2 instance of tomcat on 1 machine). The log gave this message:

      Jul 6, 2010 7:36:50 AM org.apache.tomcat.util.digester.Digester startElement
      SEVERE: Begin event threw error
      java.lang.ExceptionInInitializerError
           at com.sun.identity.agents.arch.AgentConfiguration.bootStrapClientConfiguration(AgentConfiguration.java:682)

      Caused by: com.sun.identity.security.AMSecurityPropertiesException: AdminTokenAction: FATAL ERROR: Cannot obtain Application SSO token.
      Check AMConfig.properties for the following properties
           com.sun.identity.agents.app.username
           com.iplanet.am.service.password
           at com.sun.identity.security.AdminTokenAction.run(AdminTokenAction.java:258)


      The AMConfig.properties contents:
      com.sun.am.event.connection.disable.list=@DISABLE_PERSISTENT_SEARCH@
      com.iplanet.am.server.port=@SERVER_PORT@
      com.iplanet.am.serverMode=true
      com.sun.identity.sm.enableDataStoreNotification=@DATASTORE_NOTIFICATION@
      com.sun.services.debug.mergeall=off
      com.sun.identity.urlconnection.useCache=false
      com.iplanet.services.debug.level=error
      com.sun.embedded.replicationport=
      com.iplanet.security.SSLSocketFactoryImpl=netscape.ldap.factory.JSSESocketFactory
      com.iplanet.services.configpath=@BASE_DIR@
      com.sun.identity.overrideAMC=true
      com.iplanet.am.locale=@PLATFORM_LOCALE@
      com.iplanet.am.server.host=@SERVER_HOST@
      am.encryption.pwd=@AM_ENC_KEY@
      com.sun.embedded.sync.servers=on
      com.iplanet.am.service.secret=@ENCLDAPUSERPASSWD@
      com.iplanet.am.server.protocol=@SERVER_PROTO@
      com.sun.identity.common.systemtimerpool.size=3
      com.iplanet.am.ldap.connection.ldap.error.codes.retries=80,81,91
      com.sun.identity.sm.sms_object_class_name=com.sun.identity.sm.@SMS_OBJECT_CLASS@
      com.iplanet.am.services.deploymentDescriptor=/@SERVER_URI@