[jboss-jira] [JBoss JIRA] (WFLY-8471) Elytron, *-authentication-factory protocol attribute should be case insensitive
Jan Kalina (JIRA)
issues at jboss.org
Mon Apr 10 12:34:00 EDT 2017
[ https://issues.jboss.org/browse/WFLY-8471?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]
Jan Kalina reassigned WFLY-8471:
--------------------------------
Assignee: Jan Kalina (was: Darran Lofthouse)
> Elytron, *-authentication-factory protocol attribute should be case insensitive
> -------------------------------------------------------------------------------
>
> Key: WFLY-8471
> URL: https://issues.jboss.org/browse/WFLY-8471
> Project: WildFly
> Issue Type: Bug
> Components: Security
> Reporter: Martin Choma
> Assignee: Jan Kalina
> Priority: Blocker
>
> When I use "HTTP" in protocol attribute instead of "http", I get 403 instead of succesfull access.
> According to http://www.rfc-base.org/txt/rfc-1738.txt
> Scheme names consist of a sequence of characters. The lower case
> letters "a"--"z", digits, and the characters plus ("+"), period
> ("."), and hyphen ("-") are allowed. For resiliency, programs
> interpreting URLs should treat upper case letters as equivalent to
> lower case in scheme names (e.g., allow "HTTP" as well as "http").
--
This message was sent by Atlassian JIRA
(v7.2.3#72005)
More information about the jboss-jira
mailing list