How to monitor sso protected site
Posted: Fri Aug 22, 2014 2:40 am
Hi
Here I am using ckformlogin script
./ckformlogin.pl -u http://abc.com/appname/faces/index.jspx -p 'user=xyz@password=123456' -a "http://RSACLEARTRUST.com/cleartrust/ct_ ... index.jspx" -l "Welcome to your" -t "Hello"
I got message like this
ERROR: content match failed on target page
When access application from browser
Application URL http://abc.com/APP1/faces/index.jspx
Redirect to http://RSACLEARTRUST.com/cleartrust/ct_logon.jsp
After login it process like this http://RSACLEARTRUST.com/cleartrust/ct_ ... om%3A80%2F
Here it will create session and add sso header to application URL
Finally it show in browser URL http://abc.com/APP1/faces/index.jspx?_a ... wkcuwrvm_4
If I use option -d at the end
Target URL: http://abc.com/appname/faces/index.jspx
POST Data: user=xyz@password=123456
Action URL: http://RSACLEARTRUST.com/cleartrust/ct_ ... index.jspx
Login content: Welcome to your
Target content: Hello
Debug mode? 1
request for protected url: http://abc.com/appname/faces/index.jspx
attempting site login...
ERROR: content match failed on target page
DEBUG: target content:
Here I am using ckformlogin script
./ckformlogin.pl -u http://abc.com/appname/faces/index.jspx -p 'user=xyz@password=123456' -a "http://RSACLEARTRUST.com/cleartrust/ct_ ... index.jspx" -l "Welcome to your" -t "Hello"
I got message like this
ERROR: content match failed on target page
When access application from browser
Application URL http://abc.com/APP1/faces/index.jspx
Redirect to http://RSACLEARTRUST.com/cleartrust/ct_logon.jsp
After login it process like this http://RSACLEARTRUST.com/cleartrust/ct_ ... om%3A80%2F
Here it will create session and add sso header to application URL
Finally it show in browser URL http://abc.com/APP1/faces/index.jspx?_a ... wkcuwrvm_4
If I use option -d at the end
Target URL: http://abc.com/appname/faces/index.jspx
POST Data: user=xyz@password=123456
Action URL: http://RSACLEARTRUST.com/cleartrust/ct_ ... index.jspx
Login content: Welcome to your
Target content: Hello
Debug mode? 1
request for protected url: http://abc.com/appname/faces/index.jspx
attempting site login...
ERROR: content match failed on target page
DEBUG: target content: