[jboss-jira] [JBoss JIRA] (WFLY-430) Update the whoami operation to also show the authentication mechanism when called with verbose=true

Darran Lofthouse (JIRA) jira-events at lists.jboss.org
Mon Jun 3 05:51:55 EDT 2013


    [ https://issues.jboss.org/browse/WFLY-430?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=12778753#comment-12778753 ] 

Darran Lofthouse commented on WFLY-430:
---------------------------------------

I have pulled this into WildFly 8 schedule as information from this operation could be very useful to access control.

When working on access control it does sound like a users roles may be loaded in the context of the operation they are performing, this operation will be very useful to double check which roles were assigned at specific locations.

                
> Update the whoami operation to also show the authentication mechanism when called with verbose=true
> ---------------------------------------------------------------------------------------------------
>
>                 Key: WFLY-430
>                 URL: https://issues.jboss.org/browse/WFLY-430
>             Project: WildFly
>          Issue Type: Task
>          Components: CLI, Security
>            Reporter: Darran Lofthouse
>            Assignee: Darran Lofthouse
>             Fix For: 8.0.0.Alpha2
>
>
> I need to review if this is feasible but there are a number of reports coming in where end users believe their server is not secured because our local / silent mechanism is working so quietly.

--
This message is automatically generated by JIRA.
If you think it was sent incorrectly, please contact your JIRA administrators
For more information on JIRA, see: http://www.atlassian.com/software/jira


More information about the jboss-jira mailing list