[jboss-jira] [JBoss JIRA] (WFLY-13161) CLIENT-CERT login does not work in intermediate elytron setup

Ricardo Martin Camarero (Jira) issues at jboss.org
Tue Feb 25 03:39:00 EST 2020


     [ https://issues.redhat.com/browse/WFLY-13161?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]

Ricardo Martin Camarero moved JBEAP-18804 to WFLY-13161:
--------------------------------------------------------

              Project: WildFly  (was: JBoss Enterprise Application Platform)
                  Key: WFLY-13161  (was: JBEAP-18804)
             Workflow: GIT Pull Request workflow   (was: CDW with loose statuses v1)
          Component/s: Security
                           (was: Security)
    Affects Version/s: 19.0.0.Beta2
                           (was: 7.2.4.GA)


> CLIENT-CERT login does not work in intermediate elytron setup
> -------------------------------------------------------------
>
>                 Key: WFLY-13161
>                 URL: https://issues.redhat.com/browse/WFLY-13161
>             Project: WildFly
>          Issue Type: Bug
>          Components: Security
>    Affects Versions: 19.0.0.Beta2
>            Reporter: Ricardo Martin Camarero
>            Assignee: Ricardo Martin Camarero
>            Priority: Major
>              Labels: elytron
>
> Authentication does not uses cache when use Picketbox by Elytron. 
> With Picketbox only:
> {code:java}
> 2020-01-02 10:39:48,215 TRACE [org.jboss.security] (default task-1) PBOX00208: Inserted cache info: org.jboss.security.authentication.JBossCachedAuthenticationManager$DomainInfo at 8ea6c5a
> 2020-01-02 10:39:48,215 TRACE [org.jboss.security] (default task-1) PBOX00201: End isValid, result = true
> 2020-01-02 10:39:48,401 TRACE [org.jboss.security] (default task-1) PBOX00354: Setting security roles ThreadLocal: null
> 2020-01-02 10:39:56,034 TRACE [org.jboss.security] (default task-1) PBOX00200: Begin isValid, principal: org.wildfly.extension.undertow.security.AccountImpl$AccountPrincipal at a518beed, cache entry: 
> {code}
> With Picketbox by Elytron:
> {code:java}
> /2020-01-02 10:42:11,325 TRACE [org.jboss.security] (default task-1) PBOX00205: End validateCache, result = false
> 2020-01-02 10:42:11,325 TRACE [org.jboss.security] (default task-1) PBOX00209: defaultLogin, principal: MP VIU1
> 2020-01-02 10:42:11,325 TRACE [org.jboss.security] (default task-1) PBOX00221: Begin getAppConfigurationEntry(isone-jaas-cert), size: 4
> 2020-01-02 10:42:11,325 TRACE [org.jboss.security] (default task-1) PBOX00224: End getAppConfigurationEntry(isone-jaas-cert), AuthInfo: AppConfigurationEntry[]:
> {code}
> I'm attaching the configurations used and the application to test.



--
This message was sent by Atlassian Jira
(v7.13.8#713008)


More information about the jboss-jira mailing list