Details

    • Type: Bug Bug
    • Status: Closed
    • Priority: Major Major
    • Resolution: Fixed
    • Affects Version/s: 2.0.2, 2.1.1, 2.1.4, 2.2
    • Fix Version/s: 2.2
    • Component/s: Tomcat
    • Security Level: public (Regular issues)
    • Labels:
      None

      Description

      Several problems:
      1. UserDataPermissions are not getting evaluated by jacc due to the check for Subject in handler data.
      2. Subject is never set into handler data (also a problem in jetty, dunno about openejb).

      3. TomcatGeronimoRealm is calling ContextManager.setCallers before permission checks. This is wrong.

        Activity

        David Jencks made changes -
        Status Open [ 1 ] Closed [ 6 ]
        Resolution Fixed [ 1 ]
        Jarek Gawor made changes -
        Affects Version/s 2.1.4 [ 12313380 ]
        Fix Version/s 2.1.4 [ 12313380 ]
        David Jencks made changes -
        Fix Version/s 2.0.4 [ 12313465 ]
        Jay D. McHugh made changes -
        Fix Version/s 2.0.4 [ 12313465 ]
        Fix Version/s 2.0.3 [ 12313315 ]
        Donald Woods made changes -
        Fix Version/s 2.1.3 [ 12313316 ]
        Fix Version/s 2.1.4 [ 12313380 ]
        Joe Bohn made changes -
        Fix Version/s 2.1.2 [ 12313123 ]
        Fix Version/s 2.1.3 [ 12313316 ]
        Joe Bohn made changes -
        Field Original Value New Value
        Fix Version/s 2.0.x [ 12312601 ]
        Fix Version/s 2.0.3 [ 12313315 ]
        David Jencks created issue -

          People

          • Assignee:
            David Jencks
            Reporter:
            David Jencks
          • Votes:
            0 Vote for this issue
            Watchers:
            0 Start watching this issue

            Dates

            • Created:
              Updated:
              Resolved:

              Development