Uploaded image for project: 'PicketBox '
  1. PicketBox
  2. SECURITY-821

SPNEGOSocket does not throw Exception in case it fails to establish GSSContext

XMLWordPrintable

    • Icon: Enhancement Enhancement
    • Resolution: Done
    • Icon: Major Major
    • Negotiation_2_1_6
    • Negotiation_2_1_5, Negotiation_2_2_7, Negotiation_2_3_0_Final
    • Negotiation
    • None

      Point of failure: https://github.com/wildfly/jboss-negotiation/blob/master/jboss-negotiation-net/src/main/java/org/jboss/security/negotiation/net/SPNEGOSocket.java#L127

      Socket in mentioned versions log error and allow connection to be up. This is a cause of hangup in case of proxy lookup( atleast in EAP5 - JBPAPP-10748 )

      Code should terminate connection and throw exception upstream, in case login/logout failure.

              rhn-cservice-bbaranow Bartosz Baranowski
              rhn-cservice-bbaranow Bartosz Baranowski
              Votes:
              0 Vote for this issue
              Watchers:
              2 Start watching this issue

                Created:
                Updated:
                Resolved: