[jbossseam-issues] [JBoss JIRA] Commented: (JBSEAM-918) Group principal can be "roles" or "Roles"

Gavin King (JIRA) jira-events at lists.jboss.org
Sat Feb 24 14:21:35 EST 2007


    [ http://jira.jboss.com/jira/browse/JBSEAM-918?page=comments#action_12354214 ] 
            
Gavin King commented on JBSEAM-918:
-----------------------------------

OK, so is this string defined by the JAAS spec? By JBossSX? Common convention?

Definitely JBossSX expects it to be 'Roles", so I think we should change to use that. But does it need to be configurable?

Shane?

> Group principal can be "roles" or "Roles"
> -----------------------------------------
>
>                 Key: JBSEAM-918
>                 URL: http://jira.jboss.com/jira/browse/JBSEAM-918
>             Project: JBoss Seam
>          Issue Type: Bug
>          Components: Security
>    Affects Versions: 1.1.7.CR1
>         Environment: JBoss 4.0.X, WIndows AD
>            Reporter: Keith Naas
>         Assigned To: Gavin King
>            Priority: Critical
>             Fix For: 1.1.7.GA
>
>
> In our environment we use a jaas login module to get much of the role information from the Active Directory tree.  When trying to do role based authorization with Seam, we are always denied access.  It appears that this is because the Groups principal name in our environment is "Roles" instead of "roles".  I have no idea how the name is controlled.  However, by simply changing the "equals" calls with "equalsIgnoreCase", everything works fine.  

-- 
This message is automatically generated by JIRA.
-
If you think it was sent incorrectly contact one of the administrators: http://jira.jboss.com/jira/secure/Administrators.jspa
-
For more information on JIRA, see: http://www.atlassian.com/software/jira

        



More information about the seam-issues mailing list