In OIM 11gR2 PS2, user is able to assign role to User, when Auto Approval is chosen. ie when user assigns someuser to a Role, with Auto approval, it works fine as expected. This someuser is assigned to Role no issues.
However when I choose, DefaultRequestApproval (which comes out of box) for approval, I get following error when request is raised by user. See below error. Once again, if change to auto approval, it works fine. Not sure what is this Failed authentication. I checked login to soa-infra url works fine.
IAM-2050126 : Invalid outcome com.oracle.bpel.client.BPELFault: faultName: {{http://schemas.oracle.com/bpel/extension}remoteFault} messageType: {{http://schemas.oracle.com/bpel/extension}RuntimeFaultMessage} parts: {{summary=<summary>FailedAuthentication : The security token cannot be authenticated.</summary> ,detail=<detail>oracle.j2ee.ws.client.jaxws.JRFSOAPFaultException: Client received SOAP Fault from server : FailedAuthentication : The security token cannot be authenticated.</detail> ,code=<code>
{http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-secext-1.0.xsd} FailedAuthentication</code>} received from SOA for the request id 21.