Am configurat OAuth2-OpenID Connect Single-Sign-On folosind WSO2 Identity Server-5.10.0 cu aplicația mea web în configurarea Kubernetes.
În timp ce ne conectăm la aplicația web, când facem clic pe link-ul a uitat numele de utilizator/parola din pagina de conectare SSO, adresa URL se adaugă cu numărul de port 9443- https://wso2is:9443/accountrecoveryendpoint/recoveraccountrouter.do?client_id
, după eliminarea manuală a numărului de port din url, pagina se încarcă cu url -https://wso2is/accountrecoveryendpoint/recoveraccountrouter.do?client_id
în browser.
Mai jos este fișierul deployment.toml folosit în configurarea noastră.
desfăşurare.toml
[identity.auth_framework.endpoint]
identity_server_service_url="https://$ref{server.hostname}:9443/services"
[event.default_listener.identity_mgt]
prioritate= "50"
enable = fals
[event.default_listener.governance_identity_mgt]
prioritate= "95"
enable = adevărat
[event.default_listener.governance_identity_store]
prioritate= "97"
enable = adevărat
[authentication.authenticator.email_otp]
nume = ""
enable= adevărat
[authentication.authenticator.email_otp.parameters]
useEventHandlerBasedEmailSender = adevărat
[output_adapter.email]
from_address=""
nume utilizator = ""
parola= ""
hostname= ""
port=
enable_start_tls= adevărat
enable_authentication= adevărat
semnătură = ""
Pentru a evita redirecționarea către portul 9443, adăugați configurația de mai jos
[transport.https.properties]
proxyPort = 443
După adăugarea proxyPort = 443, obținem mai jos eroarea în UI și jurnalele:
introduceți descrierea imaginii aici
Eroare la efectuarea metodei de solicitare: GET pe resursa: https://wso2is/api/identity/recovery/v0.9/captcha?tenant-domain=carbon.super&captcha-type=ReCaptcha&recovery-type=password-recovery com.sun .jersey.api.client.ClientHandlerException: java.net.ConnectException: Conexiune refuzată (Conexiune refuzată)
la com.sun.jersey.client.urlconnection.URLConnectionClientHandler.handle(URLConnectionClientHandler.java:155)
la com.sun.jersey.api.client.Client.handle(Client.java:652)
la com.sun.jersey.api.client.WebResource.handle(WebResource.java:682)
la com.sun.jersey.api.client.WebResource.access $200(WebResource.java:74)
la com.sun.jersey.api.client.WebResource$Builder.get(WebResource.java:509)
la org.wso2.carbon.identity.mgt.endpoint.util.client.ApiClient.getAPIResponse(ApiClient.java:489)
la org.wso2.carbon.identity.mgt.endpoint.util.client.ApiClient.invokeAPI(ApiClient.java:529)
la org.wso2.carbon.identity.mgt.endpoint.util.client.api.ReCaptchaApi.getReCaptcha(ReCaptchaApi.java:105)
la org.apache.jsp.password_002drecovery_jsp._jspService(parola_002drecovery_jsp.java:197)
la org.apache.jasper.runtime.HttpJspBase.service(HttpJspBase.java:70)
la javax.servlet.http.HttpServlet.service(HttpServlet.java:741)
la org.apache.jasper.servlet.JspServletWrapper.service(JspServletWrapper.java:477)
la org.apache.jasper.servlet.JspServlet.serviceJspFile(JspServlet.java:385)
la org.apache.jasper.servlet.JspServlet.service(JspServlet.java:329)
la javax.servlet.http.HttpServlet.service(HttpServlet.java:741)
la org.apache.catalina.core.ApplicationFilterChain.internalDoFilter(ApplicationFilterChain.java:231)
la org.apache.catalina.core.ApplicationFilterChain.doFilter(ApplicationFilterChain.java:166)
la org.apache.tomcat.websocket.server.WsFilter.doFilter(WsFilter.java:53)
la org.apache.catalina.core.ApplicationFilterChain.internalDoFilter(ApplicationFilterChain.java:193)
la org.apache.catalina.core.ApplicationFilterChain.doFilter(ApplicationFilterChain.java:166)
la org.apache.catalina.core.ApplicationDispatcher.invoke(ApplicationDispatcher.java:712)
la org.apache.catalina.core.ApplicationDispatcher.processRequest(ApplicationDispatcher.java:459)
la org.apache.catalina.core.ApplicationDispatcher.doForward(ApplicationDispatcher.java:384)
la org.apache.catalina.core.ApplicationDispatcher.forward(ApplicationDispatcher.java:312)
la org.apache.jsp.account_002drecovery_002drouter_jsp._jspService(account_002drecovery_002drouter_jsp.java:138)
la org.apache.jasper.runtime.HttpJspBase.service(HttpJspBase.java:70)
la javax.servlet.http.HttpServlet.service(HttpServlet.java:741)
la org.apache.jasper.servlet.JspServletWrapper.service(JspServletWrapper.java:477)
la org.apache.jasper.servlet.JspServlet.serviceJspFile(JspServlet.java:385)
la org.apache.jasper.servlet.JspServlet.service(JspServlet.java:329)
la javax.servlet.http.HttpServlet.service(HttpServlet.java:741)
la org.apache.catalina.core.ApplicationFilterChain.internalDoFilter(ApplicationFilterChain.java:231)
la org.apache.catalina.core.ApplicationFilterChain.doFilter(ApplicationFilterChain.java:166)
la org.apache.tomcat.websocket.server.WsFilter.doFilter(WsFilter.java:53)
la org.apache.catalina.core.ApplicationFilterChain.internalDoFilter(ApplicationFilterChain.java:193)
la org.apache.catalina.core.ApplicationFilterChain.doFilter(ApplicationFilterChain.java:166)
la org.apache.catalina.filters.SetCharacterEncodingFilter.doFilter(SetCharacterEncodingFilter.java:109)
la org.apache.catalina.core.ApplicationFilterChain.internalDoFilter(ApplicationFilterChain.java:193)
la org.apache.catalina.core.ApplicationFilterChain.doFilter(ApplicationFilterChain.java:166)
la org.wso2.carbon.ui.filters.cache.ContentTypeBasedCachePreventionFilter.doFilter(ContentTypeBasedCachePreventionFilter.java:53)
la org.apache.catalina.core.ApplicationFilterChain.internalDoFilter(ApplicationFilterChain.java:193)
la org.apache.catalina.core.ApplicationFilterChain.doFilter(ApplicationFilterChain.java:166)
la org.apache.catalina.filters.HttpHeaderSecurityFilter.doFilter(HttpHeaderSecurityFilter.java:126)
la org.apache.catalina.core.ApplicationFilterChain.internalDoFilter(ApplicationFilterChain.java:193)
la org.apache.catalina.core.ApplicationFilterChain.doFilter(ApplicationFilterChain.java:166)
la org.apache.catalina.core.StandardWrapperValve.invoke(StandardWrapperValve.java:202)
la org.apache.catalina.core.StandardContextValve.invoke(StandardContextValve.java:96)
la org.apache.catalina.authenticator.AuthenticatorBase.invoke(AuthenticatorBase.java:541)
la org.apache.catalina.core.StandardHostValve.invoke(StandardHostValve.java:139)
la org.apache.catalina.valves.ErrorReportValve.invoke(ErrorReportValve.java:92)
la org.wso2.carbon.identity.context.rewrite.valve.TenantContextRewriteValve.invoke(TenantContextRewriteValve.java:86)
la org.wso2.carbon.identity.authz.valve.AuthorizationValve.invoke(AuthorizationValve.java:110)
la org.wso2.carbon.identity.auth.valve.AuthenticationValve.invoke(AuthenticationValve.java:75)
la org.wso2.carbon.tomcat.ext.valves.CompositeValve.continueInvocation(CompositeValve.java:99)
la org.wso2.carbon.tomcat.ext.valves.TomcatValveContainer.invokeValves(TomcatValveContainer.java:49)
la org.wso2.carbon.tomcat.ext.valves.CompositeValve.invoke(CompositeValve.java:62)
la org.wso2.carbon.tomcat.ext.valves.CarbonStuckThreadDetectionValve.invoke(CarbonStuckThreadDetectionValve.java:145)
la org.apache.catalina.valves.AbstractAccessLogValve.invoke(AbstractAccessLogValve.java:688)
la org.wso2.carbon.tomcat.ext.valves.CarbonContextCreatorValve.invoke(CarbonContextCreatorValve.java:57)
la org.wso2.carbon.tomcat.ext.valves.RequestEncodingValve.invoke(RequestEncodingValve.java:49)
la org.wso2.carbon.tomcat.ext.valves.RequestCorrelationIdValve.invoke(RequestCorrelationIdValve.java:119)
la org.apache.catalina.core.StandardEngineValve.invoke(StandardEngineValve.java:74)
la org.apache.catalina.connector.CoyoteAdapter.service(CoyoteAdapter.java:343)
la org.apache.coyote.http11.Http11Processor.service(Http11Processor.java:367)
la org.apache.coyote.AbstractProcessorLight.process(AbstractProcessorLight.java:65)
la org.apache.coyote.AbstractProtocol$ConnectionHandler.process(AbstractProtocol.java:868)
la org.apache.tomcat.util.net.NioEndpoint$SocketProcessor.doRun(NioEndpoint.java:1639)
la org.apache.tomcat.util.net.SocketProcessorBase.run(SocketProcessorBase.java:49)
la java.base/java.util.concurrent.ThreadPoolExecutor.runWorker(ThreadPoolExecutor.java:1128)
la java.base/java.util.concurrent.ThreadPoolExecutor$Worker.run(ThreadPoolExecutor.java:628)
la org.apache.tomcat.util.threads.TaskThread$WrappingRunnable.run(TaskThread.java:61)
la java.base/java.lang.Thread.run(Thread.java:834)
Cauzat de: java.net.ConnectException: Conexiune refuzată (Conexiune refuzată)
la java.base/java.net.PlainSocketImpl.socketConnect(Metoda nativă)
la java.base/java.net.AbstractPlainSocketImpl.doConnect(AbstractPlainSocketImpl.java:399)
la java.base/java.net.AbstractPlainSocketImpl.connectToAddress(AbstractPlainSocketImpl.java:242)
la java.base/java.net.AbstractPlainSocketImpl.connect(AbstractPlainSocketImpl.java:224)
la java.base/java.net.SocksSocketImpl.connect(SocksSocketImpl.java:403)
la java.base/java.net.Socket.connect(Socket.java:609)
la java.base/sun.security.ssl.SSLSocketImpl.connect(SSLSocketImpl.java:285)
la java.base/sun.security.ssl.BaseSSLSocketImpl.connect(BaseSSLSocketImpl.java:173)
la java.base/sun.net.NetworkClient.doConnect(NetworkClient.java:182)
la java.base/sun.net.www.http.HttpClient.openServer(HttpClient.java:474)
la java.base/sun.net.www.http.HttpClient.openServer(HttpClient.java:569)
la java.base/sun.net.www.protocol.https.HttpsClient.<init>(HttpsClient.java:265)
la java.base/sun.net.www.protocol.https.HttpsClient.New(HttpsClient.java:372)
la java.base/sun.net.www.protocol.https.AbstractDelegateHttpsURLConnection.getNewHttpClient(AbstractDelegateHttpsURLConnection.java:191)
la java.base/sun.net.www.protocol.http.HttpURLConnection.plainConnect0(HttpURLConnection.java:1187)
la java.base/sun.net.www.protocol.http.HttpURLConnection.plainConnect(HttpURLConnection.java:1081)
la java.base/sun.net.www.protocol.https.AbstractDelegateHttpsURLConnection.connect(AbstractDelegateHttpsURLConnection.java:177)
la java.base/sun.net.www.protocol.http.HttpURLConnection.getInputStream0(HttpURLConnection.java:1587)
la java.base/sun.net.www.protocol.http.HttpURLConnection.getInputStream(HttpURLConnection.java:1515)
la java.base/java.net.HttpURLConnection.getResponseCode(HttpURLConnection.java:527)
la java.base/sun.net.www.protocol.https.HttpsURLConnectionImpl.getResponseCode(HttpsURLConnectionImpl.java:334)
la com.sun.jersey.client.urlconnection.URLConnectionClientHandler._invoke(URLConnectionClientHandler.java:253)
la com.sun.jersey.client.urlconnection.URLConnectionClientHandler.handle(URLConnectionClientHandler.java:153)
... încă 71