Uploaded image for project: 'WildFly Elytron'
  1. WildFly Elytron
  2. ELY-571

ServerAuthenticationContext authorizeRunAs should be checking the transofremed name matches the authentication ID

XMLWordPrintable

    • Icon: Bug Bug
    • Resolution: Done
    • Icon: Major Major
    • 1.1.0.Beta6
    • None
    • API / SPI
    • None

      At the moment the raw authorization ID is compared against the current authenticated principal, however we need to be comparing the result of name rewriting as applied to the authorization ID as this is the identity we will try and run as.

            darran.lofthouse@redhat.com Darran Lofthouse
            darran.lofthouse@redhat.com Darran Lofthouse
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

              Created:
              Updated:
              Resolved: