[jboss-jira] [JBoss JIRA] (AS7-4920) There's no way to enforce security on an in-vm connection in AS7

Justin Bertram (JIRA) jira-events at lists.jboss.org
Tue May 29 15:47:18 EDT 2012


Justin Bertram created AS7-4920:
-----------------------------------

             Summary: There's no way to enforce security on an in-vm connection in AS7
                 Key: AS7-4920
                 URL: https://issues.jboss.org/browse/AS7-4920
             Project: Application Server 7
          Issue Type: Bug
          Components: JMS
            Reporter: Justin Bertram
            Assignee: Andy Taylor


When AS7 starts org.jboss.as.messaging.jms.JMSService sets up a default security override for in-vm connections.  There is no way to disable this override and there should be.

Note: When securing the default in-vm connection automated XA transaction recovery is a concern.  I don't believe there's currently any way to specify credentials for it.  We'll likely need a HORNETQ JIRA to take care of that.  

--
This message is automatically generated by JIRA.
If you think it was sent incorrectly, please contact your JIRA administrators: https://issues.jboss.org/secure/ContactAdministrators!default.jspa
For more information on JIRA, see: http://www.atlassian.com/software/jira

        


More information about the jboss-jira mailing list