[
https://jira.jboss.org/jira/browse/SECURITY-294?page=com.atlassian.jira.p...
]
Anil Saldhana updated SECURITY-294:
-----------------------------------
Fix Version/s: 2.0.2.CR10
(was: 2.0.2.GA)
EJB 1.1 isCallerInRole strict semantics
---------------------------------------
Key: SECURITY-294
URL:
https://jira.jboss.org/jira/browse/SECURITY-294
Project: JBoss Security and Identity Management
Issue Type: Feature Request
Security Level: Public(Everyone can see)
Components: JBossSX
Affects Versions: 2.0.2.CR9
Reporter: Anil Saldhana
Assignee: Anil Saldhana
Fix For: 2.0.2.CR10
EJBContext.isCallerInRole should throw a RTE is the role being checked does not exist in
the deployment descriptor. For this reason, there is a enforce-ejb-restrictions flag in
jboss.xml
http://anonsvn.jboss.org/repos/jbossas/branches/Branch_4_2/server/src/res...
--
This message is automatically generated by JIRA.
-
If you think it was sent incorrectly contact one of the administrators:
https://jira.jboss.org/jira/secure/Administrators.jspa
-
For more information on JIRA, see:
http://www.atlassian.com/software/jira