Uploaded image for project: 'JBoss Enterprise Application Platform'
  1. JBoss Enterprise Application Platform
  2. JBEAP-10997

Access with empty username is not logged in Elytron audit log

    Details

    • Type: Bug
    • Status: Closed (View Workflow)
    • Priority: Blocker
    • Resolution: Rejected
    • Affects Version/s: 7.1.0.DR18
    • Fix Version/s: None
    • Component/s: Security
    • Labels:
      None

      Description

      When empty user name is used for authentication then there is no audit log related to this event. It does not appear in syslog nor audit file. Empty username should be logged since it can be valid configuration for some systems.

      We request blocker flag since this issue blocks RFE EAP7-541.

        Gliffy Diagrams

          Attachments

            Issue Links

              Activity

                People

                • Assignee:
                  Unassigned
                  Reporter:
                  olukas Ondrej Lukas
                • Votes:
                  0 Vote for this issue
                  Watchers:
                  3 Start watching this issue

                  Dates

                  • Created:
                    Updated:
                    Resolved: