OAuth 2.0 with Kerberos


  • You might encounter an issue where after the SSO setup, you start having problems with OAuth 2.0 and the call to /o/oauth2/token is failing with a "401 Unauthorized error".
  • Also if you use Apache you might see the following:
    "POST /o/oauth2/token HTTP/1.1" 401 381 "-" "Apache-HttpClient/4.5.11 (Java/11.0.10)"


  • Liferay DXP 7.2


  • The  used API URLs should be excluded by Apache to solve this with another <Location> directive or <LocationMatch> with a RegEx

