<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Identity Manager 2.7 and Access Point 2.7, cannot login in Workspace ONE Discussions</title>
    <link>https://communities.vmware.com/t5/Workspace-ONE-Discussions/Identity-Manager-2-7-and-Access-Point-2-7-cannot-login/m-p/917137#M4088</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Actually, I deployed pair of APs behind a LB using PowerShell script, not OVF Tool. I used both of them for both of Identity Manager and View entry point.&lt;/P&gt;&lt;P&gt;I attached the swagger UI json parameters used of mine after sanitizing it.&lt;/P&gt;&lt;P&gt;HTH.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 27 Mar 2017 07:12:45 GMT</pubDate>
    <dc:creator>ShadyMalatawey</dc:creator>
    <dc:date>2017-03-27T07:12:45Z</dc:date>
    <item>
      <title>Identity Manager 2.7 and Access Point 2.7, cannot login</title>
      <link>https://communities.vmware.com/t5/Workspace-ONE-Discussions/Identity-Manager-2-7-and-Access-Point-2-7-cannot-login/m-p/917131#M4082</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I have an issue with Identity Manager 2.7 and Access Point 2.7. When a user tries to login through the Access Point, the login hangs. I see a rotating cursor-thingie in the middle. When I enter an incorrect password, I get the response immediately. The certificate seems to be correct on the Access Point, the users get to the login-screen of the portal.&lt;/P&gt;&lt;P&gt;Anyone have got this configuration working? Configuration of the Access Point:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;"Identifier": "WEB_REVERSE_PROXY",&lt;/P&gt;&lt;P&gt;"enabled": true,&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;"proxyDestinationURL": "&lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="https://vidmserver.example.com" rel="nofollow"&gt;https://vidmserver.example.com&lt;/A&gt;&lt;SPAN&gt;",&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;"proxyPattern": "(/|/SAAS(.*)|/hc(.*)|/web(.*)|/catalog-portal(.*))",&lt;/P&gt;&lt;P&gt;"unSecurePattern": "(/catalog-portal(.*)|/|/SAAS/|/SAAS|/SAAS/API/1.0/GET/image(.*)|/SAAS/horizon/css(.*)|/SAAS/horizon/angular(.*)|/SAAS/horizon/js(.*)|/SAAS/horizon/js-lib(.*)|/SAAS/auth/login(.*)|/SAAS/jersey/manager/api/branding|/SAAS/horizon/images/(.*)|/SAAS/jersey/manager/api/images/(.*)|/hc/(.*)/authenticate/(.*)|/hc/static/(.*)|/SAAS/auth/saml/response|/SAAS/auth/authenticatedUserDispatcher|/web(.*)|/SAAS/apps/|/SAAS/horizon/portal/(.*)|/SAAS/horizon/fonts(.*)|/SAAS/API/1.0/POST/sso(.*)|/SAAS/API/1.0/REST/system/info(.*)|/SAAS/API/1.0/REST/auth/cert(.*)|/SAAS/API/1.0/REST/oauth2/activate(.*)|/SAAS/API/1.0/GET/user/devices/register(.*)|/SAAS/API/1.0/oauth2/token(.*)|/SAAS/API/1.0/REST/oauth2/session(.*)|/SAAS/API/1.0/REST/user/resources(.*)|/hc/t/(.*)/(.*)/authenticate(.*)|/SAAS/API/1.0/REST/auth/logout(.*)|/SAAS/auth/saml/response(.*)|/SAAS/(.*)/(.*)auth/login(.*)|/SAAS/API/1.0/GET/apps/launch(.*)|/SAAS/API/1.0/REST/user/applications(.*)|/SAAS/auth/federation/sso(.*)|/SAAS/auth/oauth2/authorize(.*)|/hc/prepareSaml/failure(.*)|/SAAS/auth/oauthtoken(.*)|/SAAS/API/1.0/GET/metadata/idp.xml|/SAAS/auth/saml/artifact/resolve(.*)|/hc/(.*)/authAdapter(.*)|/hc/authenticate/(.*)|/SAAS/auth/logout|/SAAS/common.js|/SAAS/auth/launchInput(.*)|/SAAS/launchUsersApplication.do(.*)|/hc/API/1.0/REST/thinapp/download(.*)|/hc/t/(.*)/(.*)/logout(.*))",&lt;/P&gt;&lt;P&gt;"authCookie": "HZN",&lt;/P&gt;&lt;P&gt;"loginRedirectURL": "/SAAS/auth/login?dest=%s"&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 23 Aug 2016 08:45:18 GMT</pubDate>
      <guid>https://communities.vmware.com/t5/Workspace-ONE-Discussions/Identity-Manager-2-7-and-Access-Point-2-7-cannot-login/m-p/917131#M4082</guid>
      <dc:creator>VirtualSven</dc:creator>
      <dc:date>2016-08-23T08:45:18Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Manager 2.7 and Access Point 2.7, cannot login</title>
      <link>https://communities.vmware.com/t5/Workspace-ONE-Discussions/Identity-Manager-2-7-and-Access-Point-2-7-cannot-login/m-p/917132#M4083</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I get a similar problem : once the login and password are sent, the login hangs.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Tough, when I reload the page the page,&amp;nbsp; the user gets authenticated (only if one authentication factor)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If i have two auth factors,&amp;nbsp; the login fails&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Best regards,&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 12 Oct 2016 15:56:19 GMT</pubDate>
      <guid>https://communities.vmware.com/t5/Workspace-ONE-Discussions/Identity-Manager-2-7-and-Access-Point-2-7-cannot-login/m-p/917132#M4083</guid>
      <dc:creator>RGEORGET</dc:creator>
      <dc:date>2016-10-12T15:56:19Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Manager 2.7 and Access Point 2.7, cannot login</title>
      <link>https://communities.vmware.com/t5/Workspace-ONE-Discussions/Identity-Manager-2-7-and-Access-Point-2-7-cannot-login/m-p/917133#M4084</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Anyone get anywhere with this issue? I am experiencing the same thing, I imagine it's in the unSecurePattern or proxyPattern. I tried with and without the leading ( and ending ) in the documentation and still no luck. I did see errors in the audit log on vIDM that requests had been denied for malformed url, I'm thinking the list is either messed up or missing something.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 21 Oct 2016 14:42:38 GMT</pubDate>
      <guid>https://communities.vmware.com/t5/Workspace-ONE-Discussions/Identity-Manager-2-7-and-Access-Point-2-7-cannot-login/m-p/917133#M4084</guid>
      <dc:creator>chadc1979</dc:creator>
      <dc:date>2016-10-21T14:42:38Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Manager 2.7 and Access Point 2.7, cannot login</title>
      <link>https://communities.vmware.com/t5/Workspace-ONE-Discussions/Identity-Manager-2-7-and-Access-Point-2-7-cannot-login/m-p/917134#M4085</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Well I managed to get around the issue by deploying additional Access Points just for Identity Manager, I don't think it plays well trying to use a single Access Point for both View and Identity Manager.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here is what I ended up using and so far so good and remember the admin functions won't work externally!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;{&lt;BR /&gt;&amp;nbsp; "identifier": "WEB_REVERSE_PROXY",&lt;BR /&gt;&amp;nbsp; "enabled": true,&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp; "proxyDestinationUrl": "&lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="https://workspace.example.com:443" rel="nofollow"&gt;https://workspace.example.com:443&lt;/A&gt;&lt;SPAN&gt;",&lt;/SPAN&gt;&lt;BR /&gt;&amp;nbsp; "healthCheckUrl": "/favicon.ico",&lt;BR /&gt;&amp;nbsp; "proxyPattern": "/|/SAAS(.*)|/hc(.*)|/web(.*)|/catalog-portal(.*)",&lt;BR /&gt;&amp;nbsp; "unSecurePattern": "/catalog-portal(.*)|/|/SAAS/|/SAAS|/SAAS/API/1.0/GET/image(.*)|/SAAS/horizon/css(.*)|/SAAS/horizon/angular(.*)|/SAAS/horizon/js(.*)|/SAAS/horizon/js-lib(.*)|/SAAS/auth/login(.*)|/SAAS/jersey/manager/api/branding|/SAAS/horizon/images/(.*)|/SAAS/jersey/manager/api/images/(.*)|/hc/(.*)/authenticate/(.*)|/hc/static/(.*)|/SAAS/auth/saml/response|/SAAS/auth/authenticatedUserDispatcher|/web(.*)|/SAAS/apps/|/SAAS/horizon/portal/(.*)|/SAAS/horizon/fonts(.*)|/SAAS/API/1.0/POST/sso(.*)|/SAAS/API/1.0/REST/system/info(.*)|/SAAS/API/1.0/REST/auth/cert(.*)|/SAAS/API/1.0/REST/oauth2/activate(.*)|/SAAS/API/1.0/GET/user/devices/register(.*)|/SAAS/API/1.0/oauth2/token(.*)|/SAAS/API/1.0/REST/oauth2/session(.*)|/SAAS/API/1.0/REST/user/resources(.*)|/hc/t/(.*)/(.*)/authenticate(.*)|/SAAS/API/1.0/REST/auth/logout(.*)|/SAAS/auth/saml/response(.*)|/SAAS/(.*)/(.*)auth/login(.*)|/SAAS/API/1.0/GET/apps/launch(.*)|/SAAS/API/1.0/REST/user/applications(.*)|/SAAS/auth/federation/sso(.*)|/SAAS/auth/oauth2/authorize(.*)|/hc/prepareSaml/failure(.*)|/SAAS/auth/oauthtoken(.*)|/SAAS/API/1.0/GET/metadata/idp.xml|/SAAS/auth/saml/artifact/resolve(.*)|/hc/(.*)/authAdapter(.*)|/hc/authenticate/(.*)|/SAAS/auth/logout|/SAAS/common.js|/SAAS/auth/launchInput(.*)|/SAAS/launchUsersApplication.do(.*)|/hc/API/1.0/REST/thinapp/download(.*)|/hc/t/(.*)/(.*)/logout(.*)",&lt;BR /&gt;&amp;nbsp; "authCookie": "HZN",&lt;BR /&gt;&amp;nbsp; "loginRedirectURL": "/SAAS/auth/login?dest=%s"&lt;BR /&gt;}&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;{&lt;BR /&gt;&amp;nbsp; "locale": "en_US",&lt;BR /&gt;&amp;nbsp; "adminPassword": "*****",&lt;BR /&gt;&amp;nbsp; "cipherSuites": "TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256,TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA,TLS_RSA_WITH_AES_128_CBC_SHA",&lt;BR /&gt;&amp;nbsp; "honorCipherOrder": false,&lt;BR /&gt;&amp;nbsp; "ssl30Enabled": false,&lt;BR /&gt;&amp;nbsp; "tls10Enabled": false,&lt;BR /&gt;&amp;nbsp; "tls11Enabled": true,&lt;BR /&gt;&amp;nbsp; "tls12Enabled": true,&lt;BR /&gt;&amp;nbsp; "healthCheckUrl": "/favicon.ico",&lt;BR /&gt;&amp;nbsp; "cookiesToBeCached": "none",&lt;BR /&gt;&amp;nbsp; "ipMode": "STATICV4",&lt;BR /&gt;&amp;nbsp; "sessionTimeout": 36000000,&lt;BR /&gt;&amp;nbsp; "quiesceMode": false,&lt;BR /&gt;&amp;nbsp; "monitorInterval": 60&lt;BR /&gt;}&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 22 Oct 2016 14:56:07 GMT</pubDate>
      <guid>https://communities.vmware.com/t5/Workspace-ONE-Discussions/Identity-Manager-2-7-and-Access-Point-2-7-cannot-login/m-p/917134#M4085</guid>
      <dc:creator>chadc1979</dc:creator>
      <dc:date>2016-10-22T14:56:07Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Manager 2.7 and Access Point 2.7, cannot login</title>
      <link>https://communities.vmware.com/t5/Workspace-ONE-Discussions/Identity-Manager-2-7-and-Access-Point-2-7-cannot-login/m-p/917135#M4086</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;It seems like this is still a problem with Access Point 2.8.&amp;nbsp; After looking at what is being sent and received we are noticing that the HZN cookie is not getting set when accessing through the Access Point.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 06 Feb 2017 17:09:56 GMT</pubDate>
      <guid>https://communities.vmware.com/t5/Workspace-ONE-Discussions/Identity-Manager-2-7-and-Access-Point-2-7-cannot-login/m-p/917135#M4086</guid>
      <dc:creator>opie81</dc:creator>
      <dc:date>2017-02-06T17:09:56Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Manager 2.7 and Access Point 2.7, cannot login</title>
      <link>https://communities.vmware.com/t5/Workspace-ONE-Discussions/Identity-Manager-2-7-and-Access-Point-2-7-cannot-login/m-p/917136#M4087</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The spinning circle issue is most likely related to the HZN cookie not getting passed to the Identity Manager from the Access Point.&amp;nbsp; I discovered that the default setting for cookiesToBeCached to be set to *.&amp;nbsp; This blocks the HZN cookie from getting passed and why if the powershell script is used for deployment the login process works without issue due to the setting &lt;SPAN style="color: #666666; font-family: proxima-nova, Arial, sans-serif; font-size: 14px;"&gt; "cookiesToBeCached": "none".&amp;nbsp; I will have to do more testing but I believe that this is the problem that everyone is having.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #666666; font-family: proxima-nova, Arial, sans-serif; font-size: 14px;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #666666; font-family: proxima-nova, Arial, sans-serif; font-size: 14px;"&gt;Nick&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 06 Feb 2017 19:06:31 GMT</pubDate>
      <guid>https://communities.vmware.com/t5/Workspace-ONE-Discussions/Identity-Manager-2-7-and-Access-Point-2-7-cannot-login/m-p/917136#M4087</guid>
      <dc:creator>opie81</dc:creator>
      <dc:date>2017-02-06T19:06:31Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Manager 2.7 and Access Point 2.7, cannot login</title>
      <link>https://communities.vmware.com/t5/Workspace-ONE-Discussions/Identity-Manager-2-7-and-Access-Point-2-7-cannot-login/m-p/917137#M4088</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Actually, I deployed pair of APs behind a LB using PowerShell script, not OVF Tool. I used both of them for both of Identity Manager and View entry point.&lt;/P&gt;&lt;P&gt;I attached the swagger UI json parameters used of mine after sanitizing it.&lt;/P&gt;&lt;P&gt;HTH.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 27 Mar 2017 07:12:45 GMT</pubDate>
      <guid>https://communities.vmware.com/t5/Workspace-ONE-Discussions/Identity-Manager-2-7-and-Access-Point-2-7-cannot-login/m-p/917137#M4088</guid>
      <dc:creator>ShadyMalatawey</dc:creator>
      <dc:date>2017-03-27T07:12:45Z</dc:date>
    </item>
  </channel>
</rss>

