Uploaded image for project: 'JBoss Enterprise Application Platform'
  1. JBoss Enterprise Application Platform
  2. JBEAP-5038

EAP responds with 403 except of 401 on IBM java with Kerberos

XMLWordPrintable

    • Icon: Bug Bug
    • Resolution: Done
    • Icon: Minor Minor
    • 7.1.1.CR1, 7.1.1.GA
    • 7.0.0.GA
    • Security
    • Hide

      1. Secure management interface with kerberos authentication
      2. In keytab element provide principal, which does not exists in keytab.

      Show
      1. Secure management interface with kerberos authentication 2. In keytab element provide principal, which does not exists in keytab.
    • EAP 7.1.1

      With http://www-01.ibm.com/support/docview.wss?uid=swg1IV82679 ibm java introduced throwing exception when keytab does not include configured principal [1]. Then EAP responds with 403 Forbidden response. And not expecting/standard 401 Unauthorized response to give a chance for client for selecting fallback mechanism for example.

              rhn-support-ivassile Ilia Vassilev
              mchoma@redhat.com Martin Choma
              Daniel Cihak Daniel Cihak
              Daniel Cihak Daniel Cihak
              Votes:
              0 Vote for this issue
              Watchers:
              5 Start watching this issue

                Created:
                Updated:
                Resolved: