Uploaded image for project: 'Red Hat Fuse'
  1. Red Hat Fuse
  2. ENTESB-6100

Hawtio web console does not handle password well if it contains character ':'

    XMLWordPrintable

    Details

    • Type: Bug
    • Status: Closed
    • Priority: Major
    • Resolution: Done
    • Affects Version/s: jboss-fuse-6.2.1, jboss-fuse-6.3
    • Fix Version/s: fuse-7.0
    • Component/s: Hawtio
    • Labels:
      None

      Description

      Hawtio web console does not handle password well if it contains character ':'.

      Here is how to reproduce the issue:
      Create a new user with password contains ':' character, for instance:

      testuser=Adec1:123,admin
      

      and then use this user to connect to SSH console, it works. But if use this user to login to Hawtio web console, it fails.

      I also tested some other special characters in password, like '!', '#', '$', '%','@', '^' and '&' and '*', then all worked fine. Perhaps we should also test all of non-alphabetic characters to be sure.

        Gliffy Diagrams

          Attachments

            Activity

              People

              • Assignee:
                jpoth John Poth
                Reporter:
                joe.luo Joe Luo
              • Votes:
                0 Vote for this issue
                Watchers:
                6 Start watching this issue

                Dates

                • Created:
                  Updated:
                  Resolved: