Uploaded image for project: 'PicketBox '
  1. PicketBox
  2. SECURITY-821

SPNEGOSocket does not throw Exception in case it fails to establish GSSContext

XMLWordPrintable

    • Icon: Enhancement Enhancement
    • Resolution: Done
    • Icon: Major Major
    • Negotiation_2_1_6
    • Negotiation_2_1_5, Negotiation_2_2_7, Negotiation_2_3_0_Final
    • Negotiation
    • None

      Point of failure: https://github.com/wildfly/jboss-negotiation/blob/master/jboss-negotiation-net/src/main/java/org/jboss/security/negotiation/net/SPNEGOSocket.java#L127

      Socket in mentioned versions log error and allow connection to be up. This is a cause of hangup in case of proxy lookup( atleast in EAP5 - JBPAPP-10748 )

      Code should terminate connection and throw exception upstream, in case login/logout failure.

            rhn-cservice-bbaranow Bartosz Baranowski
            rhn-cservice-bbaranow Bartosz Baranowski
            Votes:
            0 Vote for this issue
            Watchers:
            2 Start watching this issue

              Created:
              Updated:
              Resolved: