[gatein-issues] [JBoss JIRA] (GTNPORTAL-2211) Declare the MembershipUpdateListener in organization-configuration.xml

RH Bugzilla Integration (JIRA) jira-events at lists.jboss.org
Wed Mar 21 06:26:47 EDT 2012


    [ https://issues.jboss.org/browse/GTNPORTAL-2211?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=12678265#comment-12678265 ] 

RH Bugzilla Integration commented on GTNPORTAL-2211:
----------------------------------------------------

mposolda at redhat.com made a comment on [bug 793804|https://bugzilla.redhat.com/show_bug.cgi?id=793804]


    Technical note updated. If any revisions are required, please edit the "Technical Notes" field
    accordingly. All revisions will be proofread by the Engineering Content Services team.
    
    Diffed Contents:
@@ -1 +1 @@
-It was discovered that changing memberships of already authenticated users did not immediately take effect. If a user had administrative membership revoked, and remained logged onto the portal, the privileges were still accessible for up to 30 minutes until the user permissions cache was refreshed. This could permit the user to perform undesirable actions in the portal. The fix introduces a new listener "MembershipUpdateListener" which is configurable from the organization-configuration.xml directive file. The listener immediately updates authenticated user memberships based on information in the ConversationRegistry. Changes to user memberships now take effect immediately, which corrects the originally reported issue.+It was discovered that changing memberships of already authenticated users did not immediately take effect. If a user had administrative membership revoked, and remained logged onto the portal, the privileges were still accessible for up to 30 minutes until the user permissions cache was refreshed. This could permit the user to perform undesirable actions in the portal. The fix introduces a new listener "MembershipUpdateListener" which has been added to organization-configuration.xml directive file. The listener immediately updates authenticated user memberships based on information in the ConversationRegistry. Changes to user memberships now take effect immediately, which corrects the originally reported issue.
                
> Declare the MembershipUpdateListener in organization-configuration.xml
> ----------------------------------------------------------------------
>
>                 Key: GTNPORTAL-2211
>                 URL: https://issues.jboss.org/browse/GTNPORTAL-2211
>             Project: GateIn Portal
>          Issue Type: Bug
>      Security Level: Public(Everyone can see) 
>            Reporter: Hai Nguyen
>            Assignee: Hai Nguyen
>            Priority: Minor
>              Labels: portal-s63, synced
>             Fix For: 3.2.0-Beta01
>
>
> The goal is to have other products not declare it.

--
This message is automatically generated by JIRA.
If you think it was sent incorrectly, please contact your JIRA administrators: https://issues.jboss.org/secure/ContactAdministrators!default.jspa
For more information on JIRA, see: http://www.atlassian.com/software/jira

       



More information about the gatein-issues mailing list