Details
-
Bug
-
Resolution: Done
-
Major
-
7.0.0.GA
-
Documentation (Ref Guide, User Guide, etc.)
Description
Document URL:
Section Number and Name:
3.7. SIMPLE LOGIN MODULE
Describe the issue:
As the documentation is saying :
- if the password is equal to the user, assign an identity equal to the username and both admin and guest roles.
But as per the code it never adds 'admin' role :
protected Group[] getRoleSets() throws LoginException
{
Group[] roleSets =
;
if( guestOnly == false )
roleSets[0].addMember(new SimplePrincipal("user"));
roleSets[0].addMember(new SimplePrincipal("guest"));
return roleSets;
}
Suggestions for improvement:
Instead of 'admin' role there should be 'user' role .
Attachments
Issue Links
- clones
-
JBEAP-10608 [7.1] The org.jboss.security.auth.spi.SimpleServerLoginModule does not add role 'admin' when username equals password
- Closed