[jboss-jira] [JBoss JIRA] (WFCORE-897) IPv6 address in security realm using Kerberos
Darran Lofthouse (JIRA)
issues at jboss.org
Thu Nov 10 06:55:01 EST 2016
[ https://issues.jboss.org/browse/WFCORE-897?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]
Darran Lofthouse resolved WFCORE-897.
-------------------------------------
Fix Version/s: 3.0.0.Alpha13
Assignee: Darran Lofthouse
Resolution: Out of Date
Resolving as out of date as we are migrating to Elytron for management security.
> IPv6 address in security realm using Kerberos
> ---------------------------------------------
>
> Key: WFCORE-897
> URL: https://issues.jboss.org/browse/WFCORE-897
> Project: WildFly Core
> Issue Type: Bug
> Components: Security
> Reporter: Martin Choma
> Assignee: Darran Lofthouse
> Priority: Optional
> Fix For: 3.0.0.Alpha13
>
>
> When kerberos in realm is configured to use IPv6 address with square brackets, eg. [2620:52:0:2804:56ee:75ff:fe34:630e], EAP generates TGS-REQ for remote/2620:52:0:2804:56ee:75ff:fe34:630e instead of remote/[2620:52:0:2804:56ee:75ff:fe34:630e]. It cause failures when remote/[2620:52:0:2804:56ee:75ff:fe34:630e]@JBOSS.ORG is used in keytab.
> This happens when such realm secures CLI or EJB remoting. It doesnt happen when used for securing management console."
--
This message was sent by Atlassian JIRA
(v7.2.3#72005)
More information about the jboss-jira
mailing list