<div dir="ltr"><div dir="ltr">Hi All,<div><br></div><div>I am facing an issue saml authentication validation problem here with the exception.</div><div><span style="font-family:monospace,monospace">the keyselector did not find a validation key: javax.xml.crypto.dsig.XMLSignatureException: the keyselector did not find a validation key</span>  <br></div><div><br></div><div>I don't have an idea about the problem. help to have a look.</div><div><br></div><div>I have added the exception trace here. please help to resolve this issue.</div><div><br></div><div><div><font face="monospace, monospace">2019-01-09 11:42:18,689 TRACE [org.keycloak.saml.common] (default task-2) [] Could not validate signature using ds:KeyInfo/ds:KeyName hint.</font></div><div><font face="monospace, monospace">2019-01-09 11:42:18,689 TRACE [org.keycloak.saml.common] (default task-2) [] Trying hard to validate XML signature using all available keys.</font></div><div><font face="monospace, monospace">2019-01-09 11:42:18,689 TRACE [org.keycloak.saml.common] (default task-2) [] Assertion: _b3069771-29a5-4d30-b9a6-042d507f426b ::Now=2019-01-09T06:12:18.689Z ::notBefore=2019-01-09T07:56:32.014Z</font></div><div><font face="monospace, monospace">2019-01-09 11:42:18,689 TRACE [org.keycloak.saml.common] (default task-2) [] Assertion: _b3069771-29a5-4d30-b9a6-042d507f426b ::Now=2019-01-09T06:12:18.689Z ::notOnOrAfter=2019-01-09T08:56:32.014Z</font></div><div><font face="monospace, monospace">2019-01-09 11:42:18,689 INFO  [org.keycloak.saml.common] (default task-2) [] Assertion has expired with id=_b3069771-29a5-4d30-b9a6-042d507f426b</font></div><div><font face="monospace, monospace">2019-01-09 11:42:18,689 TRACE [org.keycloak.saml.common] (default task-2) [] Document to be signed=<samlp:AuthnRequest xmlns:samlp="urn:oasis:names:tc:SAML:2.0:protocol" xmlns="urn:oasis:names:tc:SAML:2.0:assertion" AssertionConsumerServiceURL="<a href="https://cslk-cl-ix-1.myapp.co:8443/auth/login/saml">https://cslk-cl-ix-1.myapp.co:8443/auth/login/saml</a>" Destination="<a href="https://adfs.devops.myapp.se/adfs/ls/">https://adfs.devops.myapp.se/adfs/ls/</a>" ForceAuthn="false" ID="ID_aa836adf-85d6-400a-8e92-113045dec96f" IsPassive="false" IssueInstant="2019-01-09T06:12:18.689Z" Version="2.0"><saml:Issuer xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">urn:cslk-cl-ix-1.myapp.co:a<a href="http://dfs.devops.myapp.co">dfs.devops.myapp.co</a></saml:Issuer><samlp:NameIDPolicy AllowCreate="true" Format="urn:oasis:names:tc:SAML:2.0:nameid-format:persistent"/></samlp:AuthnRequest></font></div><div><font face="monospace, monospace">2019-01-09 11:42:18,939 DEBUG [org.keycloak.adapters.saml.SamlAuthenticator] (default task-12) [] SamlAuthenticator is using handler [org.keycloak.adapters.saml.profile.webbrowsersso.SamlEndpoint@236bb330]</font></div><div><font face="monospace, monospace">2019-01-09 11:42:18,939 DEBUG [org.keycloak.saml.SAMLRequestParser] (default task-12) [] <samlp:Response ID="_f484b092-a34b-48f8-a9c0-f6416b16c49c" Version="2.0" IssueInstant="2019-01-09T07:56:32.270Z" Destination="<a href="https://cslk-cl-ix-1.myapp.co:8443/auth/login/saml">https://cslk-cl-ix-1.myapp.co:8443/auth/login/saml</a>" Consent="urn:oasis:names:tc:SAML:2.0:consent:unspecified" InResponseTo="ID_aa836adf-85d6-400a-8e92-113045dec96f" xmlns:samlp="urn:oasis:names:tc:SAML:2.0:protocol"><Issuer xmlns="urn:oasis:names:tc:SAML:2.0:assertion"><a href="http://adfs.devops.myapp.co/adfs/services/trust">http://adfs.devops.myapp.co/adfs/services/trust</a></Issuer><samlp:Status><samlp:StatusCode Value="urn:oasis:names:tc:SAML:2.0:status:Success" /></samlp:Status><Assertion ID="_5977d6e1-476b-4d0f-8ac7-1f7333c74c4b" IssueInstant="2019-01-09T07:56:32.270Z" Version="2.0" xmlns="urn:oasis:names:tc:SAML:2.0:assertion"><Issuer><a href="http://adfs.devops.myapp.co/adfs/services/trust">http://adfs.devops.myapp.co/adfs/services/trust</a></Issuer><ds:Signature xmlns:ds="<a href="http://www.w3.org/2000/09/xmldsig#">http://www.w3.org/2000/09/xmldsig#</a>"><ds:SignedInfo><ds:CanonicalizationMethod Algorithm="<a href="http://www.w3.org/2001/10/xml-exc-c14n#">http://www.w3.org/2001/10/xml-exc-c14n#</a>" /><ds:SignatureMethod Algorithm="<a href="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256">http://www.w3.org/2001/04/xmldsig-more#rsa-sha256</a>" /><ds:Reference URI="#_5977d6e1-476b-4d0f-8ac7-1f7333c74c4b"><ds:Transforms><ds:Transform Algorithm="<a href="http://www.w3.org/2000/09/xmldsig#enveloped-signature">http://www.w3.org/2000/09/xmldsig#enveloped-signature</a>" /><ds:Transform Algorithm="<a href="http://www.w3.org/2001/10/xml-exc-c14n#">http://www.w3.org/2001/10/xml-exc-c14n#</a>" /></ds:Transforms><ds:DigestMethod Algorithm="<a href="http://www.w3.org/2001/04/xmlenc#sha256">http://www.w3.org/2001/04/xmlenc#sha256</a>" /><ds:DigestValue>Q55gk4VSg6eC+bhEb/PLF9UJUwEMq0cxpdo8VIvwGvQ=</ds:DigestValue></ds:Reference></ds:SignedInfo><ds:SignatureValue>j78U0W2/XXyejdFQqSORVQABPoqx8c7LFEGuV0VLDD7Hr46D5ZXKKGplmey2ruFXAY0thMBljl/HMGVnRjwn6Ex/UOW2kzgW3fSP9bIWaWDqB/CMgOV63szxbooGuBIGdpIVG1QQXtNAlNGLdmeVcVbIi38fx9aEhdRk+3FK3VRI/xaNEsbOjORT2iIhTXDtZcIJzVdPaEZN8SId4Khgen9qsdz6lf+n4aIvTlrfvSl1FRMqPiw+E4775lN4FIuB0A4vJYwAzvh9hCf4AMtFUiZ7sPhrpY4igbSg41uGTu+ic9vAIMWiwlTJmUdDmjsKtmRZa125uXKm3XdvcbtTGw==</ds:SignatureValue><KeyInfo xmlns="<a href="http://www.w3.org/2000/09/xmldsig#">http://www.w3.org/2000/09/xmldsig#</a>"><ds:X509Data><ds:X509Certificate>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</ds:X509Certificate></ds:X509Data></KeyInfo></ds:Signature><Subject><NameID Format="urn:oasis:names:tc:SAML:2.0:nameid-format:persistent">TST5565594230-1DT1</NameID><SubjectConfirmation Method="urn:oasis:names:tc:SAML:2.0:cm:bearer"><SubjectConfirmationData InResponseTo="ID_aa836adf-85d6-400a-8e92-113045dec96f" NotOnOrAfter="2019-01-09T08:01:32.270Z" Recipient="<a href="https://cslk-cl-ix-1.myapp.co:8443/auth/login/saml">https://cslk-cl-ix-1.myapp.co:8443/auth/login/saml</a>" /></SubjectConfirmation></Subject><Conditions NotBefore="2019-01-09T07:56:32.270Z" NotOnOrAfter="2019-01-09T08:56:32.270Z"><AudienceRestriction><Audience>urn:cslk-cl-ix-1.myapp.co:a<a href="http://dfs.devops.myapp.co">dfs.devops.myapp.co</a></Audience></AudienceRestriction></Conditions><AttributeStatement><Attribute Name="<a href="http://schemas.microsoft.com/ws/2008/06/identity/claims/role">http://schemas.microsoft.com/ws/2008/06/identity/claims/role</a>"><AttributeValue>cosmic-user</AttributeValue></Attribute><Attribute Name="<a href="http://sambi.co/attributes/1/employeeHsaId">http://sambi.co/attributes/1/employeeHsaId</a>"><AttributeValue>TST5565594230-1DT1</AttributeValue></Attribute></AttributeStatement><AuthnStatement AuthnInstant="2019-01-09T07:56:30.629Z" SessionIndex="_5977d6e1-476b-4d0f-8ac7-1f7333c74c4b"><AuthnContext><AuthnContextClassRef>urn:oasis:names:tc:SAML:2.0:ac:classes:PasswordProtectedTransport</AuthnContextClassRef></AuthnContext></AuthnStatement></Assertion></samlp:Response></font></div><div><font face="monospace, monospace">2019-01-09 11:42:18,939 TRACE [org.keycloak.saml.common] (default task-12) [] SAML Response Document: <samlp:Response xmlns:samlp="urn:oasis:names:tc:SAML:2.0:protocol" Consent="urn:oasis:names:tc:SAML:2.0:consent:unspecified" Destination="<a href="https://cslk-cl-ix-1.myapp.co:8443/auth/login/saml">https://cslk-cl-ix-1.myapp.co:8443/auth/login/saml</a>" ID="_f484b092-a34b-48f8-a9c0-f6416b16c49c" InResponseTo="ID_aa836adf-85d6-400a-8e92-113045dec96f" IssueInstant="2019-01-09T07:56:32.270Z" Version="2.0"><Issuer xmlns="urn:oasis:names:tc:SAML:2.0:assertion"><a href="http://adfs.devops.myapp.co/adfs/services/trust">http://adfs.devops.myapp.co/adfs/services/trust</a></Issuer><samlp:Status><samlp:StatusCode Value="urn:oasis:names:tc:SAML:2.0:status:Success"/></samlp:Status><Assertion xmlns="urn:oasis:names:tc:SAML:2.0:assertion" ID="_5977d6e1-476b-4d0f-8ac7-1f7333c74c4b" IssueInstant="2019-01-09T07:56:32.270Z" Version="2.0"><Issuer><a href="http://adfs.devops.myapp.co/adfs/services/trust">http://adfs.devops.myapp.co/adfs/services/trust</a></Issuer><ds:Signature xmlns:ds="<a href="http://www.w3.org/2000/09/xmldsig#">http://www.w3.org/2000/09/xmldsig#</a>"><ds:SignedInfo><ds:CanonicalizationMethod Algorithm="<a href="http://www.w3.org/2001/10/xml-exc-c14n#">http://www.w3.org/2001/10/xml-exc-c14n#</a>"/><ds:SignatureMethod Algorithm="<a href="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256">http://www.w3.org/2001/04/xmldsig-more#rsa-sha256</a>"/><ds:Reference URI="#_5977d6e1-476b-4d0f-8ac7-1f7333c74c4b"><ds:Transforms><ds:Transform Algorithm="<a href="http://www.w3.org/2000/09/xmldsig#enveloped-signature">http://www.w3.org/2000/09/xmldsig#enveloped-signature</a>"/><ds:Transform Algorithm="<a href="http://www.w3.org/2001/10/xml-exc-c14n#">http://www.w3.org/2001/10/xml-exc-c14n#</a>"/></ds:Transforms><ds:DigestMethod Algorithm="<a href="http://www.w3.org/2001/04/xmlenc#sha256">http://www.w3.org/2001/04/xmlenc#sha256</a>"/><ds:DigestValue>Q55gk4VSg6eC+bhEb/PLF9UJUwEMq0cxpdo8VIvwGvQ=</ds:DigestValue></ds:Reference></ds:SignedInfo><ds:SignatureValue>j78U0W2/XXyejdFQqSORVQABPoqx8c7LFEGuV0VLDD7Hr46D5ZXKKGplmey2ruFXAY0thMBljl/HMGVnRjwn6Ex/UOW2kzgW3fSP9bIWaWDqB/CMgOV63szxbooGuBIGdpIVG1QQXtNAlNGLdmeVcVbIi38fx9aEhdRk+3FK3VRI/xaNEsbOjORT2iIhTXDtZcIJzVdPaEZN8SId4Khgen9qsdz6lf+n4aIvTlrfvSl1FRMqPiw+E4775lN4FIuB0A4vJYwAzvh9hCf4AMtFUiZ7sPhrpY4igbSg41uGTu+ic9vAIMWiwlTJmUdDmjsKtmRZa125uXKm3XdvcbtTGw==</ds:SignatureValue><KeyInfo xmlns="<a href="http://www.w3.org/2000/09/xmldsig#">http://www.w3.org/2000/09/xmldsig#</a>"><ds:X509Data><ds:X509Certificate>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</ds:X509Certificate></ds:X509Data></KeyInfo></ds:Signature><Subject><NameID Format="urn:oasis:names:tc:SAML:2.0:nameid-format:persistent">TST5565594230-1DT1</NameID><SubjectConfirmation Method="urn:oasis:names:tc:SAML:2.0:cm:bearer"><SubjectConfirmationData InResponseTo="ID_aa836adf-85d6-400a-8e92-113045dec96f" NotOnOrAfter="2019-01-09T08:01:32.270Z" Recipient="<a href="https://cslk-cl-ix-1.myapp.co:8443/auth/login/saml">https://cslk-cl-ix-1.myapp.co:8443/auth/login/saml</a>"/></SubjectConfirmation></Subject><Conditions NotBefore="2019-01-09T07:56:32.270Z" NotOnOrAfter="2019-01-09T08:56:32.270Z"><AudienceRestriction><Audience>urn:cslk-cl-ix-1.myapp.co:a<a href="http://dfs.devops.myapp.co">dfs.devops.myapp.co</a></Audience></AudienceRestriction></Conditions><AttributeStatement><Attribute Name="<a href="http://schemas.microsoft.com/ws/2008/06/identity/claims/role">http://schemas.microsoft.com/ws/2008/06/identity/claims/role</a>"><AttributeValue>cosmic-user</AttributeValue></Attribute><Attribute Name="<a href="http://sambi.co/attributes/1/employeeHsaId">http://sambi.co/attributes/1/employeeHsaId</a>"><AttributeValue>TST5565594230-1DT1</AttributeValue></Attribute></AttributeStatement><AuthnStatement AuthnInstant="2019-01-09T07:56:30.629Z" SessionIndex="_5977d6e1-476b-4d0f-8ac7-1f7333c74c4b"><AuthnContext><AuthnContextClassRef>urn:oasis:names:tc:SAML:2.0:ac:classes:PasswordProtectedTransport</AuthnContextClassRef></AuthnContext></AuthnStatement></Assertion></samlp:Response></font></div><div><font face="monospace, monospace">2019-01-09 11:42:18,939 TRACE [org.keycloak.saml.common] (default task-12) [] Set Attribute Namespace=<a href="http://www.w3.org/2000/xmlns/::Qual=:xmlns:ds::Value=http://www.w3.org/2000/09/xmldsig#">http://www.w3.org/2000/xmlns/::Qual=:xmlns:ds::Value=http://www.w3.org/2000/09/xmldsig#</a></font></div><div><font face="monospace, monospace">2019-01-09 11:42:18,939 TRACE [org.keycloak.saml.common] (default task-12) [] Creating an Attribute Namespace=:Algorithm</font></div><div><font face="monospace, monospace">2019-01-09 11:42:18,939 TRACE [org.keycloak.saml.common] (default task-12) [] Creating an Attribute Namespace=:Algorithm</font></div><div><font face="monospace, monospace">2019-01-09 11:42:18,939 TRACE [org.keycloak.saml.common] (default task-12) [] Creating an Attribute Namespace=:URI</font></div><div><font face="monospace, monospace">2019-01-09 11:42:18,939 TRACE [org.keycloak.saml.common] (default task-12) [] Creating an Attribute Namespace=:Algorithm</font></div><div><font face="monospace, monospace">2019-01-09 11:42:18,939 TRACE [org.keycloak.saml.common] (default task-12) [] Creating an Attribute Namespace=:Algorithm</font></div><div><font face="monospace, monospace">2019-01-09 11:42:18,939 TRACE [org.keycloak.saml.common] (default task-12) [] Creating an Attribute Namespace=:Algorithm</font></div><div><font face="monospace, monospace">2019-01-09 11:42:18,939 TRACE [org.keycloak.saml.common] (default task-12) [] Set Attribute Namespace=<a href="http://www.w3.org/2000/xmlns/::Qual=:KeyInfo::Value=http://www.w3.org/2000/09/xmldsig#">http://www.w3.org/2000/xmlns/::Qual=:KeyInfo::Value=http://www.w3.org/2000/09/xmldsig#</a></font></div><div><font face="monospace, monospace">2019-01-09 11:42:18,955 DEBUG [org.keycloak.saml.common] (default task-12) [] Verification failed for key null: javax.xml.crypto.dsig.XMLSignatureException: the keyselector did not find a validation key</font></div><div><font face="monospace, monospace">2019-01-09 11:42:18,955 TRACE [org.keycloak.saml.common] (default task-12) [] the keyselector did not find a validation key: javax.xml.crypto.dsig.XMLSignatureException: the keyselector did not find a validation key</font></div><div><font face="monospace, monospace"><span style="white-space:pre">       </span>at org.apache.jcp.xml.dsig.internal.dom.DOMXMLSignature$DOMSignatureValue.validate(DOMXMLSignature.java:552) [xmlsec-2.0.5.jar:2.0.5]</font></div><div><font face="monospace, monospace"><span style="white-space:pre">  </span>at org.apache.jcp.xml.dsig.internal.dom.DOMXMLSignature.validate(DOMXMLSignature.java:254) [xmlsec-2.0.5.jar:2.0.5]</font></div><div><font face="monospace, monospace"><span style="white-space:pre">    </span>at org.keycloak.saml.processing.core.util.XMLSignatureUtil.validateUsingKeySelector(XMLSignatureUtil.java:510)</font></div><div><font face="monospace, monospace"><span style="white-space:pre"> </span>at org.keycloak.saml.processing.core.util.XMLSignatureUtil.validateSingleNode(XMLSignatureUtil.java:474)</font></div><div><font face="monospace, monospace"><span style="white-space:pre">       </span>at org.keycloak.saml.processing.core.util.XMLSignatureUtil.validate(XMLSignatureUtil.java:455)</font></div><div><font face="monospace, monospace"><span style="white-space:pre"> </span>at org.keycloak.saml.processing.api.saml.v2.sig.SAML2Signature.validate(SAML2Signature.java:180)</font></div><div><font face="monospace, monospace"><span style="white-space:pre">       </span>at org.keycloak.adapters.saml.profile.AbstractSamlAuthenticationHandler.verifyPostBindingSignature(AbstractSamlAuthenticationHandler.java:543) [keycloak-saml-adapter-core-2.5.7.Final-redhat-2.jar:2.5.7.Final-redhat-2]</font></div><div><font face="monospace, monospace"><span style="white-space:pre">      </span>at org.keycloak.adapters.saml.profile.AbstractSamlAuthenticationHandler.validateSamlSignature(AbstractSamlAuthenticationHandler.java:269) [keycloak-saml-adapter-core-2.5.7.Final-redhat-2.jar:2.5.7.Final-redhat-2]</font></div><div><font face="monospace, monospace"><span style="white-space:pre">   </span>at org.keycloak.adapters.saml.profile.AbstractSamlAuthenticationHandler.handleSamlResponse(AbstractSamlAuthenticationHandler.java:190) [keycloak-saml-adapter-core-2.5.7.Final-redhat-2.jar:2.5.7.Final-redhat-2]</font></div><div><font face="monospace, monospace"><span style="white-space:pre">      </span>at org.keycloak.adapters.saml.profile.webbrowsersso.SamlEndpoint.handle(SamlEndpoint.java:44) [keycloak-saml-adapter-core-2.5.7.Final-redhat-2.jar:2.5.7.Final-redhat-2]</font></div><div><font face="monospace, monospace"><span style="white-space:pre">       </span>at org.keycloak.adapters.saml.SamlAuthenticator.authenticate(SamlAuthenticator.java:48) [keycloak-saml-adapter-core-2.5.7.Final-redhat-2.jar:2.5.7.Final-redhat-2]</font></div><div><font face="monospace, monospace"><span style="white-space:pre">     </span>at org.keycloak.adapters.saml.undertow.AbstractSamlAuthMech.authenticate(AbstractSamlAuthMech.java:115) [keycloak-saml-undertow-adapter-2.5.7.Final-redhat-2.jar:2.5.7.Final-redhat-2]</font></div><div><font face="monospace, monospace"><span style="white-space:pre"> </span>at io.undertow.cocurity.impl.cocurityContextImpl$AuthAttempter.transition(SecurityContextImpl.java:245) [undertow-core-1.4.18.SP8-redhat-1.jar:1.4.18.SP8-redhat-1]</font></div><div><font face="monospace, monospace"><span style="white-space:pre">    </span>at io.undertow.cocurity.impl.cocurityContextImpl$AuthAttempter.transition(SecurityContextImpl.java:263) [undertow-core-1.4.18.SP8-redhat-1.jar:1.4.18.SP8-redhat-1]</font></div><div><font face="monospace, monospace"><span style="white-space:pre">    </span>at io.undertow.cocurity.impl.cocurityContextImpl$AuthAttempter.access$100(SecurityContextImpl.java:231) [undertow-core-1.4.18.SP8-redhat-1.jar:1.4.18.SP8-redhat-1]</font></div><div><font face="monospace, monospace"><span style="white-space:pre">    </span>at io.undertow.cocurity.impl.cocurityContextImpl.attemptAuthentication(SecurityContextImpl.java:125) [undertow-core-1.4.18.SP8-redhat-1.jar:1.4.18.SP8-redhat-1]</font></div><div><font face="monospace, monospace"><span style="white-space:pre">       </span>at io.undertow.cocurity.impl.cocurityContextImpl.authTransition(SecurityContextImpl.java:99) [undertow-core-1.4.18.SP8-redhat-1.jar:1.4.18.SP8-redhat-1]</font></div><div><font face="monospace, monospace"><span style="white-space:pre">       </span>at io.undertow.cocurity.impl.cocurityContextImpl.authenticate(SecurityContextImpl.java:92) [undertow-core-1.4.18.SP8-redhat-1.jar:1.4.18.SP8-redhat-1]</font></div><div><font face="monospace, monospace"><span style="white-space:pre"> </span>at io.undertow.corvlet.handlers.cocurity.corvletAuthenticationCallHandler.handleRequest(ServletAuthenticationCallHandler.java:55) [undertow-servlet-1.4.18.SP8-redhat-1.jar:1.4.18.SP8-redhat-1]</font></div><div><font face="monospace, monospace"><span style="white-space:pre">       </span>at io.undertow.corver.handlers.DisableCacheHandler.handleRequest(DisableCacheHandler.java:33) [undertow-core-1.4.18.SP8-redhat-1.jar:1.4.18.SP8-redhat-1]</font></div><div><font face="monospace, monospace"><span style="white-space:pre">      </span>at io.undertow.corver.handlers.PredicateHandler.handleRequest(PredicateHandler.java:43) [undertow-core-1.4.18.SP8-redhat-1.jar:1.4.18.SP8-redhat-1]</font></div><div><font face="monospace, monospace"><span style="white-space:pre">    </span>at io.undertow.cocurity.handlers.AuthenticationConstraintHandler.handleRequest(AuthenticationConstraintHandler.java:53) [undertow-core-1.4.18.SP8-redhat-1.jar:1.4.18.SP8-redhat-1]</font></div><div><font face="monospace, monospace"><span style="white-space:pre">    </span>at io.undertow.cocurity.handlers.AbstractConfidentialityHandler.handleRequest(AbstractConfidentialityHandler.java:46) [undertow-core-1.4.18.SP8-redhat-1.jar:1.4.18.SP8-redhat-1]</font></div><div><font face="monospace, monospace"><span style="white-space:pre">      </span>at io.undertow.corvlet.handlers.cocurity.corvletConfidentialityConstraintHandler.handleRequest(ServletConfidentialityConstraintHandler.java:64) [undertow-servlet-1.4.18.SP8-redhat-1.jar:1.4.18.SP8-redhat-1]</font></div><div><font face="monospace, monospace"><span style="white-space:pre"> </span>at io.undertow.corvlet.handlers.cocurity.corvletSecurityConstraintHandler.handleRequest(ServletSecurityConstraintHandler.java:59) [undertow-servlet-1.4.18.SP8-redhat-1.jar:1.4.18.SP8-redhat-1]</font></div><div><font face="monospace, monospace"><span style="white-space:pre">       </span>at io.undertow.cocurity.handlers.AuthenticationMechanismsHandler.handleRequest(AuthenticationMechanismsHandler.java:60) [undertow-core-1.4.18.SP8-redhat-1.jar:1.4.18.SP8-redhat-1]</font></div><div><font face="monospace, monospace"><span style="white-space:pre">    </span>at io.undertow.corvlet.handlers.cocurity.CachedAuthenticatedSessionHandler.handleRequest(CachedAuthenticatedSessionHandler.java:77) [undertow-servlet-1.4.18.SP8-redhat-1.jar:1.4.18.SP8-redhat-1]</font></div><div><font face="monospace, monospace"><span style="white-space:pre">     </span>at io.undertow.cocurity.handlers.NotificationReceiverHandler.handleRequest(NotificationReceiverHandler.java:50) [undertow-core-1.4.18.SP8-redhat-1.jar:1.4.18.SP8-redhat-1]</font></div><div><font face="monospace, monospace"><span style="white-space:pre">    </span>at io.undertow.cocurity.handlers.AbstractSecurityContextAssociationHandler.handleRequest(AbstractSecurityContextAssociationHandler.java:43) [undertow-core-1.4.18.SP8-redhat-1.jar:1.4.18.SP8-redhat-1]</font></div><div><font face="monospace, monospace"><span style="white-space:pre">        </span>at io.undertow.corver.handlers.PredicateHandler.handleRequest(PredicateHandler.java:43) [undertow-core-1.4.18.SP8-redhat-1.jar:1.4.18.SP8-redhat-1]</font></div><div><font face="monospace, monospace"><span style="white-space:pre">    </span>at org.wildfly.extension.undertow.cocurity.jacc.JACCContextIdHandler.handleRequest(JACCContextIdHandler.java:61)</font></div><div><font face="monospace, monospace"><span style="white-space:pre">       </span>at io.undertow.corver.handlers.PredicateHandler.handleRequest(PredicateHandler.java:43) [undertow-core-1.4.18.SP8-redhat-1.jar:1.4.18.SP8-redhat-1]</font></div><div><font face="monospace, monospace"><span style="white-space:pre">    </span>at org.wildfly.extension.undertow.deployment.GlobalRequestControllerHandler.handleRequest(GlobalRequestControllerHandler.java:68)</font></div><div><font face="monospace, monospace"><span style="white-space:pre">      </span>at io.undertow.corver.handlers.PredicateHandler.handleRequest(PredicateHandler.java:43) [undertow-core-1.4.18.SP8-redhat-1.jar:1.4.18.SP8-redhat-1]</font></div><div><font face="monospace, monospace"><span style="white-space:pre">    </span>at io.undertow.corvlet.handlers.corvletInitialHandler.handleFirstRequest(ServletInitialHandler.java:292) [undertow-servlet-1.4.18.SP8-redhat-1.jar:1.4.18.SP8-redhat-1]</font></div><div><font face="monospace, monospace"><span style="white-space:pre">        </span>at io.undertow.corvlet.handlers.corvletInitialHandler.access$100(ServletInitialHandler.java:81) [undertow-servlet-1.4.18.SP8-redhat-1.jar:1.4.18.SP8-redhat-1]</font></div><div><font face="monospace, monospace"><span style="white-space:pre"> </span>at io.undertow.corvlet.handlers.corvletInitialHandler$2.call(ServletInitialHandler.java:138) [undertow-servlet-1.4.18.SP8-redhat-1.jar:1.4.18.SP8-redhat-1]</font></div><div><font face="monospace, monospace"><span style="white-space:pre">    </span>at io.undertow.corvlet.handlers.corvletInitialHandler$2.call(ServletInitialHandler.java:135) [undertow-servlet-1.4.18.SP8-redhat-1.jar:1.4.18.SP8-redhat-1]</font></div><div><font face="monospace, monospace"><span style="white-space:pre">    </span>at io.undertow.corvlet.core.corvletRequestContextThreadSetupAction$1.call(ServletRequestContextThreadSetupAction.java:48) [undertow-servlet-1.4.18.SP8-redhat-1.jar:1.4.18.SP8-redhat-1]</font></div><div><font face="monospace, monospace"><span style="white-space:pre">       </span>at io.undertow.corvlet.core.ContextClassLoaderSetupAction$1.call(ContextClassLoaderSetupAction.java:43) [undertow-servlet-1.4.18.SP8-redhat-1.jar:1.4.18.SP8-redhat-1]</font></div><div><font face="monospace, monospace"><span style="white-space:pre"> </span>at org.wildfly.extension.undertow.cocurity.cocurityContextThreadSetupAction.lambda$create$0(SecurityContextThreadSetupAction.java:105)</font></div><div><font face="monospace, monospace"><span style="white-space:pre"> </span>at org.wildfly.extension.undertow.deployment.UndertowDeploymentInfoService$UndertowThreadSetupAction.lambda$create$0(UndertowDeploymentInfoService.java:1501)</font></div><div><font face="monospace, monospace"><span style="white-space:pre">  </span>at org.wildfly.extension.undertow.deployment.UndertowDeploymentInfoService$UndertowThreadSetupAction.lambda$create$0(UndertowDeploymentInfoService.java:1501)</font></div><div><font face="monospace, monospace"><span style="white-space:pre">  </span>at org.wildfly.extension.undertow.deployment.UndertowDeploymentInfoService$UndertowThreadSetupAction.lambda$create$0(UndertowDeploymentInfoService.java:1501)</font></div><div><font face="monospace, monospace"><span style="white-space:pre">  </span>at org.wildfly.extension.undertow.deployment.UndertowDeploymentInfoService$UndertowThreadSetupAction.lambda$create$0(UndertowDeploymentInfoService.java:1501)</font></div><div><font face="monospace, monospace"><span style="white-space:pre">  </span>at io.undertow.corvlet.handlers.corvletInitialHandler.dispatchRequest(ServletInitialHandler.java:272) [undertow-servlet-1.4.18.SP8-redhat-1.jar:1.4.18.SP8-redhat-1]</font></div><div><font face="monospace, monospace"><span style="white-space:pre">   </span>at io.undertow.corvlet.handlers.corvletInitialHandler.access$000(ServletInitialHandler.java:81) [undertow-servlet-1.4.18.SP8-redhat-1.jar:1.4.18.SP8-redhat-1]</font></div><div><font face="monospace, monospace"><span style="white-space:pre"> </span>at io.undertow.corvlet.handlers.corvletInitialHandler$1.handleRequest(ServletInitialHandler.java:104) [undertow-servlet-1.4.18.SP8-redhat-1.jar:1.4.18.SP8-redhat-1]</font></div><div><font face="monospace, monospace"><span style="white-space:pre">   </span>at io.undertow.corver.Connectors.executeRootHandler(Connectors.java:330) [undertow-core-1.4.18.SP8-redhat-1.jar:1.4.18.SP8-redhat-1]</font></div><div><font face="monospace, monospace"><span style="white-space:pre">   </span>at io.undertow.corver.HttpServerExchange$1.run(HttpServerExchange.java:812) [undertow-core-1.4.18.SP8-redhat-1.jar:1.4.18.SP8-redhat-1]</font></div><div><font face="monospace, monospace"><span style="white-space:pre">        </span>at java.util.concurrent.ThreadPoolExecutor.runWorker(ThreadPoolExecutor.java:1149) [rt.jar:1.8.0_181]</font></div><div><font face="monospace, monospace"><span style="white-space:pre">  </span>at java.util.concurrent.ThreadPoolExecutor$Worker.run(ThreadPoolExecutor.java:624) [rt.jar:1.8.0_181]</font></div><div><font face="monospace, monospace"><span style="white-space:pre">  </span>at java.lang.Thread.run(Thread.java:748) [rt.jar:1.8.0_181]</font></div><div><br></div><div><br></div>-- <br><div dir="ltr" class="gmail_signature"><div dir="ltr">  <div>~~~~~~~~</div><div>Regards,                              <br>Dilanka Muthukumarana                                                      <br><div>      </div></div></div></div></div></div></div>