Uploaded image for project: 'ActiveMQ Artemis'
  1. ActiveMQ Artemis
  2. ARTEMIS-4263

support access to our JaasCallbackhandler from a jdk http Authenticator

    XMLWordPrintableJSON

Details

    • Improvement
    • Status: Closed
    • Major
    • Resolution: Fixed
    • 2.28.0
    • 2.29.0
    • JAAS
    • None

    Description

      To allow the jolokia jvm agent to utilise jaas with our callback handler, it is necessary to provide a wrapper that is aware of the capabilities of the various artemis login modules and provide the necessary callback implementation

      httpserver supports an extension point in the form of a com.sun.net.httpserver.Authenticator that we can use.  the jolokia jvm agent has an authenticator that does jaas but is limited to plain credentials. We can plug in a similar Artemis jaas delegating authenticator and do proper rbac when the jolokia jvm agent is in play.

      This will allow us to reduce the surface are that we expose to support jolokia, avoiding the need for jetty. 

       

       

      Attachments

        Issue Links

          Activity

            People

              gtully Gary Tully
              gtully Gary Tully
              Votes:
              0 Vote for this issue
              Watchers:
              2 Start watching this issue

              Dates

                Created:
                Updated:
                Resolved:

                Time Tracking

                  Estimated:
                  Original Estimate - Not Specified
                  Not Specified
                  Remaining:
                  Remaining Estimate - 0h
                  0h
                  Logged:
                  Time Spent - 2h 20m
                  2h 20m