Uploaded image for project: 'JBoss Enterprise Application Platform'
  1. JBoss Enterprise Application Platform
  2. JBEAP-9945

Elytron, be consistent with legacy for misconfigured kerberos authentication of http management interface

    XMLWordPrintable

Details

    • Bug
    • Resolution: Done
    • Blocker
    • 7.1.0.ER2
    • 7.1.0.DR15
    • Security
    • None

    Description

      Intention on legacy security realm is tracked by JBEAP-8563:

      • If this is the only mechanism enabled then 500 is the correct status code
      • however if a fallback mechanism was also enabled then that mechanism should be able to challenge with a HTTP 401 status code.

      Attachments

        Issue Links

          Activity

            People

              darran.lofthouse@redhat.com Darran Lofthouse
              mchoma@redhat.com Martin Choma
              Martin Choma Martin Choma
              Martin Choma Martin Choma
              Votes:
              0 Vote for this issue
              Watchers:
              2 Start watching this issue

              Dates

                Created:
                Updated:
                Resolved: