-
Bug
-
Resolution: Done
-
Critical
-
None
-
None
If a user with insufficient role is authenticated. Then is produced only debug message in log of server:
17:58:56,684 DEBUG [org.jboss.as.controller.management-operation] (External Management Request Threads – 1) WFLYCTL0017: Operation ("read-resource") failed - address: ([]) - failure description: "WFLYCTL0313: Unauthorized to execute operation 'read-resource' for resource '[]' – \"WFLYCTL0332: Permission denied\""
And the HAL console page is blank without any text, warning or error.
When the debug mode isn't enabled then it doesn't provide enough information what is wrong.
- causes
-
JBEAP-25130 Status code 200 when the user get 403 Forbidden error message
- Closed
- is cloned by
-
HAL-1859 Insufficient logging while RBAC is used for HAL console secured by OIDC
- Resolved
- is incorporated by
-
JBEAP-24984 Upgrade HAL to 3.6.9.Final
- Closed
- relates to
-
WFLY-18113 Update the RBAC role in the documentation for securing the management console with OIDC
- Closed