IBM Support

PM77261: USER WITH MONITOR ROLE RECEIVED ' NULL ' MESSAGE WHEN ACCESSING BUNDLE CACHE ON THE ADMINISTRATIVE CONSOLE

Subscribe

You can track all active APARs for this component.

 

APAR status

  • Closed as program error.

Error description

  • When client logs into the WebSphere Administrative console
    with a user with the Monitor role and navigates to the
    following path, a null message is returned:
    
    Environment > OSGi bundle repositories > Bundle cache
    
    At this panel, the user with Monitor role receives 'Null'
    message in the AdminConsole.
    
    However, users with WebSphere Operator and / or Administrator
    role assignments are able to access the WSAS bundle cache
    using the Admin Console.
    
    SystemOut.log contains the following error:
    -------------------------------------------
    00000024 RoleBasedAuth A   SECJ0305I:
    The role-based authorization check failed for admin-authz
    operation BundleCacheManager:getAllBundles. The user monitor
    (unique ID:
    user:defaultwimfilebasedrealm/uid=monitor,o=defaultwimfilebasedr
    ealm) was not granted any of the following required roles:
    operator, administrator.
    
    Environment:
    -----------
    WebSphere Application Server version: 8.0.0.4
    

Local fix

  • User can log on to the admin console as 'operator' or
    'administrator' user role to access the Bundle Cache.
    

Problem summary

  • ****************************************************************
    * USERS AFFECTED:  All users of IBM WebSphere Application      *
    *                  Server who enable administrative security   *
    *                  and use OSGi applications                   *
    ****************************************************************
    * PROBLEM DESCRIPTION: Permissions not granted to monitor      *
    *                      role users in administration console.   *
    ****************************************************************
    * RECOMMENDATION:                                              *
    ****************************************************************
    Administration console users with the security role of monitor
    were not granted access to MBean methods required to view the
    OSGi bundle repositories page.
    

Problem conclusion

Temporary fix

Comments

APAR Information

  • APAR number

    PM77261

  • Reported component name

    WEBS APP SERV N

  • Reported component ID

    5724H8800

  • Reported release

    700

  • Status

    CLOSED PER

  • PE

    NoPE

  • HIPER

    NoHIPER

  • Special Attention

    NoSpecatt

  • Submitted date

    2012-11-16

  • Closed date

    2013-01-28

  • Last modified date

    2013-03-01

  • APAR is sysrouted FROM one or more of the following:

  • APAR is sysrouted TO one or more of the following:

Fix information

  • Fixed component name

    WEBS APP SERV N

  • Fixed component ID

    5724H8800

Applicable component levels

  • R800 PSY

       UP

  • R850 PSY

       UP

[{"Business Unit":{"code":"BU059","label":"IBM Software w\/o TPS"},"Product":{"code":"SSEQTP","label":"WebSphere Application Server"},"Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"7.0","Line of Business":{"code":"LOB45","label":"Automation"}}]

Document Information

Modified date:
29 October 2021