2025-09-30 06:20:09,060 TRACE [org.wildfly.security] (ServerService Thread Pool -- 136) Permission mapping: identity [anonymous] with roles [] implies ("org.wildfly.security.auth.permission.LoginPermission" "") = false 2025-09-30 06:20:30,353 WARN [io.undertow.servlet] (ServerService Thread Pool -- 143) UT015020: Path /ServletTwoTest is secured for some HTTP methods, however it is not secured for [TRACE, HEAD, DELETE, CONNECT, OPTIONS, PUT] 2025-09-30 06:20:30,354 TRACE [org.wildfly.security] (ServerService Thread Pool -- 143) HttpServerAuthenticationMechanismFactory provided by factories in AggregateServerMechanismFactory: [org.wildfly.security.http.basic.BasicMechanismFactory@7146df6f, org.wildfly.security.http.bearer.BearerMechanismFactory@20b45375, org.wildfly.security.http.cert.ClientCertMechanismFactory@41c3168e, org.wildfly.security.http.digest.DigestMechanismFactory@7536880f, org.wildfly.security.http.external.ExternalMechanismFactory@32cc9c61, org.wildfly.security.http.form.FormMechanismFactory@30614eb6, org.wildfly.security.http.spnego.SpnegoMechanismFactory@69cf4952] 2025-09-30 06:20:30,356 WARN [io.undertow.servlet] (ServerService Thread Pool -- 142) UT015020: Path /ServletOneTest is secured for some HTTP methods, however it is not secured for [TRACE, HEAD, DELETE, CONNECT, OPTIONS, PUT] 2025-09-30 06:20:30,358 TRACE [org.wildfly.security] (ServerService Thread Pool -- 142) HttpServerAuthenticationMechanismFactory provided by factories in AggregateServerMechanismFactory: [org.wildfly.security.http.basic.BasicMechanismFactory@3119c179, org.wildfly.security.http.bearer.BearerMechanismFactory@26f93181, org.wildfly.security.http.cert.ClientCertMechanismFactory@3deaf160, org.wildfly.security.http.digest.DigestMechanismFactory@43a24d7b, org.wildfly.security.http.external.ExternalMechanismFactory@3ccf4e7f, org.wildfly.security.http.form.FormMechanismFactory@5355155e, org.wildfly.security.http.spnego.SpnegoMechanismFactory@39de8fa5] 2025-09-30 06:20:37,659 TRACE [org.wildfly.security.http.servlet] (default task-1) Created ServletSecurityContextImpl enableJapi=true, integratedJaspi=true, applicationContext=default-host /second_module_cntxt_root 2025-09-30 06:20:37,659 TRACE [org.wildfly.security.http.servlet] (default task-1) No AuthConfigProvider for layer=HttpServlet, appContext=default-host /second_module_cntxt_root 2025-09-30 06:20:37,659 TRACE [org.wildfly.security.http.servlet] (default task-1) JASPIC Unavailable, using HTTP authentication. 2025-09-30 06:20:37,659 TRACE [org.wildfly.security] (default task-1) No CachedIdentity to restore. 2025-09-30 06:20:37,659 TRACE [org.wildfly.security] (default task-1) Created HttpServerAuthenticationMechanism [org.wildfly.security.auth.server.SecurityIdentityServerMechanismFactory$1@779f6b8e] for mechanism [BASIC] 2025-09-30 06:20:37,659 TRACE [org.wildfly.security] (default task-1) Handling AvailableRealmsCallback: realms = [default] 2025-09-30 06:20:37,659 TRACE [org.wildfly.security] (default task-1) Handling RealmCallback: selected = [default] 2025-09-30 06:20:37,659 TRACE [org.wildfly.security] (default task-1) Handling NameCallback: authenticationName = j2ee 2025-09-30 06:20:37,659 TRACE [org.wildfly.security] (default task-1) Principal assigning: [j2ee], pre-realm rewritten: [j2ee], realm name: [ApplicationRealm], post-realm rewritten: [j2ee], realm rewritten: [j2ee] 2025-09-30 06:20:37,659 TRACE [org.wildfly.security] (default task-1) Attempting to authenticate account j2ee using LegacyPropertiesSecurityRealm. 2025-09-30 06:20:37,660 TRACE [org.wildfly.security.http.basic] (default task-1) User j2ee authenticated successfully! 2025-09-30 06:20:37,660 TRACE [org.wildfly.security] (default task-1) Role mapping: principal [j2ee] -> decoded roles [Administrator, Manager] -> domain decoded roles [] -> realm mapped roles [Administrator, Manager] -> domain mapped roles [Administrator, Manager] 2025-09-30 06:20:37,660 TRACE [org.wildfly.security] (default task-1) Authorizing principal j2ee. 2025-09-30 06:20:37,660 TRACE [org.wildfly.security] (default task-1) Authorizing against the following attributes: [groups] => [Manager, Administrator] 2025-09-30 06:20:37,660 TRACE [org.wildfly.security] (default task-1) Authorizing against the following runtime attributes: [] => [] 2025-09-30 06:20:37,660 TRACE [org.wildfly.security] (default task-1) Permission mapping: identity [j2ee] with roles [Administrator, Manager] implies ("org.wildfly.security.auth.permission.LoginPermission" "") = true 2025-09-30 06:20:37,660 TRACE [org.wildfly.security] (default task-1) Authorization succeed 2025-09-30 06:20:37,660 TRACE [org.wildfly.security] (default task-1) RunAs authorization succeed - the same identity 2025-09-30 06:20:37,660 TRACE [org.wildfly.security] (default task-1) Handling AuthorizeCallback: authenticationID = j2ee authorizationID = j2ee authorized = true 2025-09-30 06:20:37,660 TRACE [org.wildfly.security] (default task-1) Handling AuthenticationCompleteCallback: succeed 2025-09-30 06:20:37,660 TRACE [org.wildfly.security] (default task-1) Handling SecurityIdentityCallback: identity = SecurityIdentity{principal=j2ee, securityDomain=org.wildfly.security.auth.server.SecurityDomain@3083c04f, authorizationIdentity=EMPTY, realmInfo=RealmInfo{name='ApplicationRealm', securityRealm=org.wildfly.extension.elytron.PropertiesRealmDefinition$RealmWrapper@291a7663}, creationTime=2025-09-30T06:20:37.660206011Z} 2025-09-30 06:20:37,660 TRACE [org.wildfly.security] (default task-1) Role mapping: principal [j2ee] -> decoded roles [Administrator, Manager] -> domain decoded roles [] -> realm mapped roles [Administrator, Manager] -> domain mapped roles [Administrator, Manager] 2025-09-30 06:20:37,660 TRACE [org.wildfly.security] (default task-1) Permission mapping: identity [anonymous] with roles [] implies ("org.wildfly.security.auth.permission.LoginPermission" "") = false 2025-09-30 06:20:37,667 TRACE [org.wildfly.security] (default task-1) Permission mapping: identity [anonymous] with roles [] implies ("org.wildfly.security.auth.permission.LoginPermission" "") = false 2025-09-30 06:20:37,668 TRACE [org.wildfly.security.xml] (default task-1) Fallback to parse legacy configuration. 2025-09-30 06:20:37,668 TRACE [org.wildfly.security.xml] (default task-1) No legacy configuration available, using AuthenticationContext.empty() 2025-09-30 06:20:37,671 TRACE [org.wildfly.security] (default task-1) Role mapping: principal [anonymous] -> decoded roles [] -> domain decoded roles [] -> realm mapped roles [] -> domain mapped roles [] 2025-09-30 06:20:37,671 TRACE [org.wildfly.security] (default task-1) Role mapping: principal [anonymous] -> decoded roles [] -> domain decoded roles [] -> realm mapped roles [] -> domain mapped roles [] 2025-09-30 06:20:37,671 TRACE [org.wildfly.security] (default task-1) Principal mapping: [javajoe], pre-realm rewritten: [javajoe], realm name: [ApplicationRealm], post realm rewritten: [javajoe], realm rewritten: [javajoe] 2025-09-30 06:20:37,671 TRACE [org.wildfly.security] (default task-1) Principal assigning: [javajoe], pre-realm rewritten: [javajoe], realm name: [ApplicationRealm], post-realm rewritten: [javajoe], realm rewritten: [javajoe] 2025-09-30 06:20:37,671 TRACE [org.wildfly.security] (default task-1) Permission mapping: identity [anonymous] with roles [] implies ("org.wildfly.security.auth.permission.RunAsPrincipalPermission" "javajoe") = true 2025-09-30 06:20:37,672 TRACE [org.wildfly.security] (default task-1) Role mapping: principal [javajoe] -> decoded roles [Manager] -> domain decoded roles [] -> realm mapped roles [Manager] -> domain mapped roles [Manager] 2025-09-30 06:20:37,672 TRACE [org.wildfly.security] (default task-1) Authorizing principal javajoe. 2025-09-30 06:20:37,672 TRACE [org.wildfly.security] (default task-1) Authorizing against the following attributes: [groups] => [Manager] 2025-09-30 06:20:37,672 TRACE [org.wildfly.security] (default task-1) Authorizing against the following runtime attributes: [] => [] 2025-09-30 06:20:37,672 TRACE [org.wildfly.security] (default task-1) Authorization succeed