Uploaded image for project: 'PicketBox '
  1. PicketBox
  2. SECURITY-938

JBossSecuritySubjectFactory should check the root cause exception when AuthenticationManager.isValid() returns false

XMLWordPrintable

    • Icon: Bug Bug
    • Resolution: Done
    • Icon: Critical Critical
    • None
    • None
    • PicketBox
    • None

      When some login-modules failed, JBossSecuritySubjectFactory will swallow the root cause of the LoginException, which will hide the message of the root cause.

      The suspicious code is at: JBossSecuritySubjectFactory.createSubject() method,

            rhn-engineering-lgao Lin Gao
            rhn-engineering-lgao Lin Gao
            Votes:
            0 Vote for this issue
            Watchers:
            4 Start watching this issue

              Created:
              Updated:
              Resolved: