[jboss-jira] [JBoss JIRA] Created: (SECURITY-294) EJB 1.1 isCallerInRole strict semantics

Anil Saldhana (JIRA) jira-events at lists.jboss.org
Thu Oct 23 15:58:26 EDT 2008


EJB 1.1 isCallerInRole strict semantics
---------------------------------------

                 Key: SECURITY-294
                 URL: https://jira.jboss.org/jira/browse/SECURITY-294
             Project: JBoss Security and Identity Management
          Issue Type: Feature Request
      Security Level: Public (Everyone can see)
          Components: JBossSX
    Affects Versions: 2.0.2.CR9
            Reporter: Anil Saldhana
            Assignee: Anil Saldhana
             Fix For: 2.0.2.GA


EJBContext.isCallerInRole  should throw a RTE is the role being checked does not exist in the deployment descriptor.  For this reason, there is a enforce-ejb-restrictions flag in jboss.xml
http://anonsvn.jboss.org/repos/jbossas/branches/Branch_4_2/server/src/resources/dtd/jboss_4_2.dtd


-- 
This message is automatically generated by JIRA.
-
If you think it was sent incorrectly contact one of the administrators: https://jira.jboss.org/jira/secure/Administrators.jspa
-
For more information on JIRA, see: http://www.atlassian.com/software/jira

        



More information about the jboss-jira mailing list