SAP Knowledge Base Article - Preview

3689863 - 403 Forbidden Error During Login via authorizationserver After Transition to New OAuth in JDK21

Symptom

After transitioning to the new OAuth implementation during the upgrade to JDK21 for both SAP Commerce and composable storefront, users encounter a "403 - Forbidden" error when attempting to log in to the storefront.

**Image/data in this KBA is from SAP internal systems, sample data, or demo systems. Any resemblance to real data is purely coincidental.**


Read more...

Environment

  • SAP Commerce Cloud, 2211 for JDK21
  • SAP Commerce Cloud, composable storefront, version 221121

Product

SAP Commerce Cloud 2211 for JDK21 ; SAP Commerce Cloud, composable storefront all versions

Keywords

JDK21, New OAuth Implementation, oauth2, CSRF token, HTTP Response Header Sets, Set-Cookie, JSESSIONID, 403, forbidden, login, composable storefront , KBA , CEC-SCC-PLA-PL , Platform , CEC-SPA , SAP Commerce Cloud Spartacus , Problem

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.