Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

JSR375: When JASPIC is enabled, a login panel pops up even EVERYONE role is assigned. #4913

Closed
toshiyamamoto opened this issue Aug 30, 2018 · 0 comments
Assignees
Labels
in:Security release bug This bug is present in a released version of Open Liberty release-18.0.0.4 team:Core Security

Comments

@toshiyamamoto
Copy link
Contributor

When JASPIC provider or JSR375 is used, a login panels pops up even the role of the target URL is mapped to EVERYONE special role. The expected behavior is that the target URL can be browsed without logging in.

@toshiyamamoto toshiyamamoto added in:Security team:Core Security release bug This bug is present in a released version of Open Liberty labels Aug 30, 2018
@toshiyamamoto toshiyamamoto self-assigned this Aug 30, 2018
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
in:Security release bug This bug is present in a released version of Open Liberty release-18.0.0.4 team:Core Security
Projects
None yet
Development

No branches or pull requests

2 participants