Skip to Main Content

APEX

Announcement

For appeals, questions and feedback about Oracle Forums, please email oracle-forums-moderators_us@oracle.com. Technical questions should be asked in the appropriate category. Thank you!

Social login Authentification blocked by aws waf

Micles_SHQ2 days ago — edited 2 days ago

Hello, I’ve set up Social Login authentication using the Keycloak service. We’re in a cloud environment hosted on AWS. The AWS WAF is blocking the request that APEX makes for authentication because the request does not contain a User-Agent. I’m getting a 403 error — this is considered a security vulnerability since the request doesn’t come from a browser, which would normally include the User-Agent. Is it possible to configure either APEX, the database, or the ORDS service so that the requests they make include the User-Agent information?

Comments
Post Details
Added 2 days ago
0 comments
122 views