RESTful calls secured with Red Hat Single Sign-On return a 200 with no content when CORS is enabled

Solution Verified - Updated -

Issue

  • Valid calls to secured RESTful endpoints with CORS enabled will return 200 OK, but have no content.

Environment

  • Red Hat Single Sign-On (RH-SSO) 7.2
  • JBoss Enterprise Application Platform (JBoss EAP) 7.1
  • OIDC authentication
  • RH-SSO adapter 7.2 for (JBoss EAP)
  • Installed with adapter-elytron-install-offline.cli or adapter-elytron-install.cli
  • HTML5 client OR client hosted on separate server from the RESTful web service.
  • CORS enabled in the RH-SSO client
  • RESTful web service Hosted on JBoss EAP

Subscriber exclusive content

A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.

Current Customers and Partners

Log in for full access

Log In

New to Red Hat?

Learn more about Red Hat subscriptions

Using a Red Hat product through a public cloud?

How to access this content