Symptom
- In order to initiate authentication for an application:
The logon application can be called directly using the /logon/logonServlet application alias, e.g. http://<hostname:port>/logon/logonServlet
or called the logon application directly with the /logon/logonServlet application alias and pass it the redirectURL URL parameter, e.g.
http://<hostname:port>/logon/logonServlet/redirectURL=customredirecturl
-
After updating the SP level of the Netweaver AS Java, entering the logon ID and password in the logon form instead of being redirected to the expected application, the logon page is displayed again with error message Cannot make redirect to original application, the redirect attribute is invalid and/or in the traces the error message Cannot make redirect to original application, redirect URL is null can be observed.
Read more...
Environment
SAP Netweaver Java Application Server
Product
Keywords
logonServlet, redirectURL, authentication, null, parameter, UME, API, logon, XSS, protection , KBA , BC-JAS-SEC , Security, User Management , BC-JAS-WEB , Web Container, HTTP, JavaMail, Servlets , Problem
About this page
This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).Search for additional results
Visit SAP Support Portal's SAP Notes and KBA Search.