Uploaded image for project: 'JBoss Enterprise Application Platform'
  1. JBoss Enterprise Application Platform
  2. JBEAP-11601

[GSS](7.1.z) The fix for WFLY-4625 breaks PolicyContext("javax.security.auth.subject.container") in CXF web service with STS

    XMLWordPrintable

Details

    • EAP 7.1.3

    Description

      Web service with STS (Picketlink) returns wrong subject with PolicyContext("javax.security.auth.subject.container").
      It seems that configured login modules are not called since SecurityContext was created by SAML2Handler for the same security domain and are skipped because of WFLY-4625.
      Reproducer is attached in BZ-1352418.

      Attachments

        Issue Links

          Activity

            People

              pjurak Petr Jurak (Inactive)
              pjurak Petr Jurak (Inactive)
              Daniel Cihak Daniel Cihak
              Daniel Cihak Daniel Cihak
              Votes:
              0 Vote for this issue
              Watchers:
              12 Start watching this issue

              Dates

                Created:
                Updated:
                Resolved: