-
Bug
-
Resolution: Not a Bug
-
Critical
-
None
-
AMQ 7.11.0.GA
-
None
-
False
-
None
-
False
-
-
-
-
Critical
The JIRA ENTMQBR-7118 has been fixed with patch 3226 and on AMQ 7.11.0 and onwards. However, the fix works with Apache DS and Oracle Directory Server, but it does not work with Microsoft Active Directory specifically.
When running the tests mentioned in the JIRA ENTMQBR-7118, the following error was thrown:
2023-06-01 15:59:57,917 [AUDIT](Thread-39878 (ActiveMQ-server-org.apache.activemq.artemis.core.server.impl.ActiveMQServerImpl$6@6134ac4a)) AMQ601264: User user6(team6)@127.0.0.1:52344 gets security check failure: ActiveMQSecurityException[errorType=SECURITY_EXCEPTION message=AMQ229032: User: user6 does not have permission='CREATE_ADDRESS' on address project6.test]
Although the team6 has been configured to have "admin", "read" and "write" permission on the destination "project6.$".
- is related to
-
ENTMQBR-7118 LegacyLDAPSecuritySettingPlugin allows new user to access new destinations if a default wildcard address '$' exists in LDAP
- Closed
- relates to
-
ENTMQBR-5429 LegacyLDAPSecuritySettingPlugin listener throws AMQ224086 with Active Directory
- Closed
-
ENTMQBR-8297 Caching Issue with Pooling Enabled for LDAP
- Closed