[jboss-jira] [JBoss JIRA] Created: (JBREM-702) http.basic.password should allow for empty passwords
Tom Elrod (JIRA)
jira-events at lists.jboss.org
Thu Feb 15 11:53:30 EST 2007
http.basic.password should allow for empty passwords
----------------------------------------------------
Key: JBREM-702
URL: http://jira.jboss.com/jira/browse/JBREM-702
Project: JBoss Remoting
Issue Type: Task
Security Level: Public (Everyone can see)
Components: security
Affects Versions: 1.4.3.GA
Reporter: Tom Elrod
Assigned To: Tom Elrod
Fix For: 2.2.0.Beta1 (Bluto)
When the http client invoker checks for passwords, it checks to make sure they are not empty. Since an empty password could be used, need to remove this check.
--
This message is automatically generated by JIRA.
-
If you think it was sent incorrectly contact one of the administrators: http://jira.jboss.com/jira/secure/Administrators.jspa
-
For more information on JIRA, see: http://www.atlassian.com/software/jira
More information about the jboss-jira
mailing list