-
Task
-
Resolution: Done
-
Major
-
1.0.5.Final
-
None
EJB client running on local node can bypass auth by using silet auth. This behaviour should be reviewed whether to be disabled by default.
See comments
https://issues.jboss.org/browse/AS7-4309?focusedCommentId=12679945&page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel#comment-12679945
https://issues.jboss.org/browse/AS7-4309?focusedCommentId=12679955&page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel#comment-12679955
- is cloned by
-
AS7-4310 Re-review: EJB client should not have silet auth enabled by default
- Resolved