Details
-
Bug
-
Status: Closed
-
Major
-
Resolution: Fixed
-
2.5.8, 2.6.5, 2.7.2
-
None
-
Unknown
Description
This is an issue for both WS-Policy and WSS4JInInterceptor configuration.
If I include an incorrect Password I get the expected authentication error. If I actually remove the password I get no authentication failure. The UsernameTokenValidator only checks that the username is provided.