]
Bartosz Baranowski updated SECURITY-821:
----------------------------------------
Summary: SPNEGOSocket does not throw Exception in case it fails to establish
GSSContext (was: SPNEGOSocket does not throw Exception in case it fails to establiosh
GSSContext)
SPNEGOSocket does not throw Exception in case it fails to establish
GSSContext
------------------------------------------------------------------------------
Key: SECURITY-821
URL:
https://issues.jboss.org/browse/SECURITY-821
Project: PicketBox
Issue Type: Enhancement
Security Level: Public(Everyone can see)
Components: Negotiation
Affects Versions: Negotiation_2_1_5, Negotiation_2_2_7, Negotiation_2_3_0_Final
Reporter: Bartosz Baranowski
Assignee: Bartosz Baranowski
Fix For: Negotiation_2_1_6, Negotiation_2_2_8, Negotiation_2_3_1_Final
Point of failure:
https://github.com/wildfly/jboss-negotiation/blob/master/jboss-negotiatio...
Socket in mentioned versions log error and allow connection to be up. This is a cause of
hangup in case of proxy lookup( atleast in EAP5 - JBPAPP-10748 )
Code should terminate connection and throw exception upstream, in case login/logout(?)
failure.
--
This message is automatically generated by JIRA.
If you think it was sent incorrectly, please contact your JIRA administrators
For more information on JIRA, see: