[seam-issues] [JBoss JIRA] Updated: (SEAMFACES-126) Throw some kind of unauthorized exception when auth fails, rather than returning a 401 response
Brian Leathem (JIRA)
jira-events at lists.jboss.org
Mon Mar 28 17:12:37 EDT 2011
[ https://issues.jboss.org/browse/SEAMFACES-126?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]
Brian Leathem updated SEAMFACES-126:
------------------------------------
Summary: Throw some kind of unauthorized exception when auth fails, rather than returning a 401 response (was: Throw an some kind of unauthorized exception when auth fails, rather than returning a 401 response)
> Throw some kind of unauthorized exception when auth fails, rather than returning a 401 response
> -----------------------------------------------------------------------------------------------
>
> Key: SEAMFACES-126
> URL: https://issues.jboss.org/browse/SEAMFACES-126
> Project: Seam Faces
> Issue Type: Enhancement
> Components: Exception Handling, Security, View Configuration
> Reporter: Brian Leathem
> Fix For: 3.0.1
>
>
> If authorization fails, and the user is not logged in, Faces looks for a @LoginViewId to redirect to, and returns a 401 response if none is found. A similar story applies for the @AccessDeniedViewId
> It would be better to instead throw an exception, that Seam Catch can intercept. If not intercepted, this exception would eventually lead to a 401 response.
--
This message is automatically generated by JIRA.
For more information on JIRA, see: http://www.atlassian.com/software/jira
More information about the seam-issues
mailing list