Details
-
Task
-
Resolution: Done
-
Major
-
None
-
None
Description
The server protocols currently allow access to internal user caches (such as the script and schema caches) if authorization is disabled. We should instead not allow access.
Attachments
Issue Links
- blocks
-
JDG-285 Protect internal caches from remote access when security is disabled
-
- Verified
-
- causes
-
ISPN-7814 Remove auth check in CacheDecodeContext
-
- Closed
-
-
KEYCLOAK-6783 Cross-dc setup with JDG server on real network doesn't work
-
- Closed
-
- relates to
-
ISPN-6454 Schema cache should require a special role when authorization is enabled
-
- Closed
-