[jboss-jira] [JBoss JIRA] (ELY-1171) Access with empty username is not logged in Elytron audit log

Ondrej Lukas (JIRA) issues at jboss.org
Thu May 18 09:00:02 EDT 2017


     [ https://issues.jboss.org/browse/ELY-1171?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]

Ondrej Lukas updated ELY-1171:
------------------------------
    Component/s: Audit


> Access with empty username is not logged in Elytron audit log
> -------------------------------------------------------------
>
>                 Key: ELY-1171
>                 URL: https://issues.jboss.org/browse/ELY-1171
>             Project: WildFly Elytron
>          Issue Type: Bug
>          Components: Audit
>    Affects Versions: 1.1.0.Beta42
>            Reporter: Ondrej Lukas
>            Assignee: Darran Lofthouse
>            Priority: Blocker
>
> When empty user name is used for authentication then there is no audit log related to this event. It does not appear in syslog nor audit file. Empty username should be logged since it can be valid configuration for some systems (i.e. it can be configured and used as anonymous login to Active Directory, see JBEAP-7947).
> We request blocker flag since this issue blocks RFE EAP7-541.



--
This message was sent by Atlassian JIRA
(v7.2.3#72005)


More information about the jboss-jira mailing list