[seam-issues] [JBoss JIRA] Resolved: (SEAMSECURITY-21) IdentityImpl does not clear active roles/groups in unAuthenticate

Shane Bryzak (JIRA) jira-events at lists.jboss.org
Sun Feb 6 18:19:39 EST 2011


     [ https://issues.jboss.org/browse/SEAMSECURITY-21?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]

Shane Bryzak resolved SEAMSECURITY-21.
--------------------------------------

    Fix Version/s: 3.0.0.Beta2
                       (was: 3.0.0.Beta1)
       Resolution: Done


unAuthenticate() now clears active and pre-auth roles and groups.

> IdentityImpl does not clear active roles/groups in unAuthenticate
> -----------------------------------------------------------------
>
>                 Key: SEAMSECURITY-21
>                 URL: https://issues.jboss.org/browse/SEAMSECURITY-21
>             Project: Seam Security
>          Issue Type: Bug
>    Affects Versions: 3.0.0.Alpha2
>         Environment: JBoss 6.0.0 final
>            Reporter: William Draï
>            Assignee: Shane Bryzak
>             Fix For: 3.0.0.Beta2
>
>
> When a user logs in again with another user name after a logout, he gets the active roles and active groups from the previous user name because activeRoles and activeGroups are not cleared.

-- 
This message is automatically generated by JIRA.
-
For more information on JIRA, see: http://www.atlassian.com/software/jira

       



More information about the seam-issues mailing list