Oracle APEX调用wwv_flow.accept经AWS ELB返回403 Forbidden问题
Oracle APEX + AWS ALB 403 Forbidden 问题
我们的Oracle APEX应用部署在两台EC2实例上,搭配启用**粘性会话(Sticky Sessions)**的AWS应用负载均衡器。应用99%的场景运行正常,但执行文件上传或其他调用wwv_flow.accept存储过程的操作时,会出现403 Forbidden错误。
环境配置
- 部署架构:两台EC2实例 + AWS应用负载均衡器(已启用粘性会话)
- 核心组件:Apache 2 httpd服务器、独立运行的ORDS、Oracle APEX,所有组件均为最新版本
错误排查情况
- Apache日志、ORDS活动日志中均无该403错误的相关记录,对Apache执行系统追踪也未获取到有效线索
- 关闭负载均衡器后,问题完全消失;且已在另一个AWS环境中复现该问题
- 通过Google DevTools观察到:请求的
Remote Address为3.208.141.138:443,响应的Server字段值为awselb/2.0 - ICANN查询显示
3.208.141.138的注册方为Amazon Data Services NoVa,由此判断该403错误及对应的页面是由AWS负载均衡器直接返回的 - 已向Oracle提交技术工单,对方排查后未发现APEX或ORDS的配置存在问题
HAR文件捕获的请求与响应信息
请求详情
"request": { "method": "POST", "url": "https://c333.example.net/ords/wwv_flow.accept?p_context=app-builder/import/14656898533235", "httpVersion": "http/2.0", "headers": [ { "name": ":authority", "value": "c333.example.net" }, { "name": ":method", "value": "POST" }, ... ] }
响应详情
"response": { "status": 403, "statusText": "", "httpVersion": "http/2.0", "headers": [ { "name": "content-length", "value": "520" }, { "name": "content-type", "value": "text/html" }, { "name": "date", "value": "Mon, 16 Sep 2024 22:06:38 GMT" }, { "name": "server", "value": "awselb/2.0" } ], }
软件版本明细
Operating System: Oracle Linux Server release 8.10 Apache: Apache/2.4.37 (Oracle Linux Server) Oracle database: Client-managed Version 21.14.0.0.0 Oracle ORDS: 24.2.3.r2011847 Oracle APEX: 24.1.4 API_COMPATIBILITY: 2024.05.31 Patch: APPLIED
内容的提问来源于stack exchange,提问作者Mark Stewart
相关产品推荐
相关产品推荐

