<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Java-administrator password keeps getting locked in Application Development and Automation Discussions</title>
    <link>https://community.sap.com/t5/application-development-and-automation-discussions/java-administrator-password-keeps-getting-locked/m-p/10423460#M1844813</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;there exists a trace location that should provide useful information for such cases. It is described in SAP note:&lt;/P&gt;&lt;P&gt;1493272 - A user gets locked automatically&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;My suggestion is add the location com.sap.security.core.userlocking as&lt;/P&gt;&lt;P&gt;specified in the attachment to the note and once it is added, set that&lt;/P&gt;&lt;P&gt;location to DEBUG and wait for the user to be locked again. Hopefully additional information concerning the origin of the bad credentials will be written to traces.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Exactly how you capture the traces depends on the frequency in which&lt;/P&gt;&lt;P&gt;the user becomes locked. For example if the user becomes locked every&lt;/P&gt;&lt;P&gt;few minutes, after adding the location in the configtool and&lt;/P&gt;&lt;P&gt;restarting the system, I suggest using the Security Troubleshooting&lt;/P&gt;&lt;P&gt;Wizard to do so. Refer to note 1332726 - Troubleshooting Wizard and&lt;/P&gt;&lt;P&gt;its attachments. Create a custom incident that is a copy of the&lt;/P&gt;&lt;P&gt;Authentication incident and add this location&lt;/P&gt;&lt;P&gt;com.sap.security.core.userlocking&amp;nbsp; to the newly created incident&lt;/P&gt;&lt;P&gt;Set the wizard to use this new incident for trace collection and wait&lt;/P&gt;&lt;P&gt;for the user to become locked. Then immediately stop the wizard's&lt;/P&gt;&lt;P&gt;trace collection&lt;/P&gt;&lt;P&gt;I&lt;/P&gt;&lt;P&gt;f the locking occurs less frequently than every few minutes, it is&lt;/P&gt;&lt;P&gt;preferable to use the NWA to adjust the severity of these locations&lt;/P&gt;&lt;P&gt;and their sublocations to DEBUG and wait for the issue to reoccur&lt;/P&gt;&lt;P&gt;com.sap.security.core.userlocking&lt;/P&gt;&lt;P&gt;com.sap.engine.interfaces.security&lt;/P&gt;&lt;P&gt;com.sap.engine.services.httpserver.HttpTraceRequest.traceRaw&lt;/P&gt;&lt;P&gt;com.sap.engine.services.httpserver.HttpTraceResponse.traceHeaders&lt;/P&gt;&lt;P&gt;com.sap.engine.services.security.authentication&lt;/P&gt;&lt;P&gt;com.sap.security.core.logon&lt;/P&gt;&lt;P&gt;com.sap.security.core.ticket&lt;/P&gt;&lt;P&gt;com.sap.security.core.util&lt;/P&gt;&lt;P&gt;com.sap.security.core.server.jaas&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;See Log Configuration with SAP NetWeaver Administrator&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://help.sap.com/saphelp_nw73/helpdata/en/47/af551efa711503e10000000a42189c/content.htm"&gt;http://help.sap.com/saphelp_nw73/helpdata/en/47/af551efa711503e10000000a42189c/content.htm&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Don't forgot to change these back to default severity levels after the&lt;/P&gt;&lt;P&gt;issue has captured in the traces&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;David&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 23 Jul 2014 12:32:07 GMT</pubDate>
    <dc:creator>davefitzgibbon</dc:creator>
    <dc:date>2014-07-23T12:32:07Z</dc:date>
    <item>
      <title>Java-administrator password keeps getting locked</title>
      <link>https://community.sap.com/t5/application-development-and-automation-discussions/java-administrator-password-keeps-getting-locked/m-p/10423458#M1844811</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;We have a portal 7.3 in which the Java-administrator password keeps getting locked. I can't see anything in the log traces in NWA. The only thing I've found is in security_audit logfile which doesn't really say much:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;#2.0 #2014 07 17 05:47:03:913#+0200#Info#/System/Security/Audit/PrincipalModification#&lt;/P&gt;&lt;P&gt;#BC-JAS-SEC-UME#com.sap.security.core.sda#C000AC142D1F08D90000000000003284#52888950000000002#tc~bl~txmanager~plb#com.sap.security.core.util.SecurityAudit#Guest#0#JTA Transaction : 127261#040FAA9B0D6511E4C5A4000003270576#040faa9b0d6511e4c5a4000003270576#040faa9b0d6511e4c5a4000003270576#0#Thread[RMI/IIOP Worker [0],5,Dedicated_Application_Thread]#Plain##&lt;/P&gt;&lt;P&gt;User account modified&amp;nbsp;&amp;nbsp;&amp;nbsp; | USERACCOUNT.MODIFY&amp;nbsp;&amp;nbsp;&amp;nbsp; | UACC.PRIVATE_DATASOURCE.un:Administrator&amp;nbsp;&amp;nbsp;&amp;nbsp; |&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; | SET_ATTRIBUTE: islocked=[true], SET_ATTRIBUTE: lockreason=[1]#&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please advice, &lt;/P&gt;&lt;P&gt;Thanks.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 22 Jul 2014 11:05:37 GMT</pubDate>
      <guid>https://community.sap.com/t5/application-development-and-automation-discussions/java-administrator-password-keeps-getting-locked/m-p/10423458#M1844811</guid>
      <dc:creator>Former Member</dc:creator>
      <dc:date>2014-07-22T11:05:37Z</dc:date>
    </item>
    <item>
      <title>Re: Java-administrator password keeps getting locked</title>
      <link>https://community.sap.com/t5/application-development-and-automation-discussions/java-administrator-password-keeps-getting-locked/m-p/10423459#M1844812</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;This message was moderated.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 22 Jul 2014 15:58:32 GMT</pubDate>
      <guid>https://community.sap.com/t5/application-development-and-automation-discussions/java-administrator-password-keeps-getting-locked/m-p/10423459#M1844812</guid>
      <dc:creator>Former Member</dc:creator>
      <dc:date>2014-07-22T15:58:32Z</dc:date>
    </item>
    <item>
      <title>Re: Java-administrator password keeps getting locked</title>
      <link>https://community.sap.com/t5/application-development-and-automation-discussions/java-administrator-password-keeps-getting-locked/m-p/10423460#M1844813</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;there exists a trace location that should provide useful information for such cases. It is described in SAP note:&lt;/P&gt;&lt;P&gt;1493272 - A user gets locked automatically&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;My suggestion is add the location com.sap.security.core.userlocking as&lt;/P&gt;&lt;P&gt;specified in the attachment to the note and once it is added, set that&lt;/P&gt;&lt;P&gt;location to DEBUG and wait for the user to be locked again. Hopefully additional information concerning the origin of the bad credentials will be written to traces.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Exactly how you capture the traces depends on the frequency in which&lt;/P&gt;&lt;P&gt;the user becomes locked. For example if the user becomes locked every&lt;/P&gt;&lt;P&gt;few minutes, after adding the location in the configtool and&lt;/P&gt;&lt;P&gt;restarting the system, I suggest using the Security Troubleshooting&lt;/P&gt;&lt;P&gt;Wizard to do so. Refer to note 1332726 - Troubleshooting Wizard and&lt;/P&gt;&lt;P&gt;its attachments. Create a custom incident that is a copy of the&lt;/P&gt;&lt;P&gt;Authentication incident and add this location&lt;/P&gt;&lt;P&gt;com.sap.security.core.userlocking&amp;nbsp; to the newly created incident&lt;/P&gt;&lt;P&gt;Set the wizard to use this new incident for trace collection and wait&lt;/P&gt;&lt;P&gt;for the user to become locked. Then immediately stop the wizard's&lt;/P&gt;&lt;P&gt;trace collection&lt;/P&gt;&lt;P&gt;I&lt;/P&gt;&lt;P&gt;f the locking occurs less frequently than every few minutes, it is&lt;/P&gt;&lt;P&gt;preferable to use the NWA to adjust the severity of these locations&lt;/P&gt;&lt;P&gt;and their sublocations to DEBUG and wait for the issue to reoccur&lt;/P&gt;&lt;P&gt;com.sap.security.core.userlocking&lt;/P&gt;&lt;P&gt;com.sap.engine.interfaces.security&lt;/P&gt;&lt;P&gt;com.sap.engine.services.httpserver.HttpTraceRequest.traceRaw&lt;/P&gt;&lt;P&gt;com.sap.engine.services.httpserver.HttpTraceResponse.traceHeaders&lt;/P&gt;&lt;P&gt;com.sap.engine.services.security.authentication&lt;/P&gt;&lt;P&gt;com.sap.security.core.logon&lt;/P&gt;&lt;P&gt;com.sap.security.core.ticket&lt;/P&gt;&lt;P&gt;com.sap.security.core.util&lt;/P&gt;&lt;P&gt;com.sap.security.core.server.jaas&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;See Log Configuration with SAP NetWeaver Administrator&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://help.sap.com/saphelp_nw73/helpdata/en/47/af551efa711503e10000000a42189c/content.htm"&gt;http://help.sap.com/saphelp_nw73/helpdata/en/47/af551efa711503e10000000a42189c/content.htm&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Don't forgot to change these back to default severity levels after the&lt;/P&gt;&lt;P&gt;issue has captured in the traces&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;David&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 23 Jul 2014 12:32:07 GMT</pubDate>
      <guid>https://community.sap.com/t5/application-development-and-automation-discussions/java-administrator-password-keeps-getting-locked/m-p/10423460#M1844813</guid>
      <dc:creator>davefitzgibbon</dc:creator>
      <dc:date>2014-07-23T12:32:07Z</dc:date>
    </item>
  </channel>
</rss>

