It came through the [EMAIL PROTECTED] list for me... did you get rev 2856?

thanks
david jencks

On Aug 16, 2006, at 1:46 PM, Donald Woods (JIRA) wrote:

[ http://issues.apache.org/jira/browse/GERONIMO-2313? page=comments#action_12428499 ]

Donald Woods commented on GERONIMO-2313:
----------------------------------------

I see the update in the openejb 2.1 branch (aka. 2.1.2-snapshot), but not in the 2.1.1 branch yet....

Subject not propagated correctly between web app and ejb
--------------------------------------------------------

                Key: GERONIMO-2313
URL: http://issues.apache.org/jira/browse/ GERONIMO-2313
            Project: Geronimo
         Issue Type: Bug
     Security Level: public(Regular issues)
   Affects Versions: 1.1, 1.1.1, 1.1.x
           Reporter: David Jencks
        Assigned To: David Jencks
            Fix For: 1.2, 1.1.2, 1.1.1

Attachments: ejbrefsec-ear-1.0-SNAPSHOT.ear, ejbrefsec.src.jar, GERONIMO-2313-openejb.diff, GERONIMO-2313.diff


With a web app with security, that calls an ejb, isCallerInRole in the ejb always returns false. this is caused by the web app not setting nextCaller and the ejb interceptors shifting nextCaller to currentCaller, so when the isCallerInRole is tested there is a null subject.... so it returns false.

--
This message is automatically generated by JIRA.
-
If you think it was sent incorrectly contact one of the administrators: http://issues.apache.org/jira/secure/ Administrators.jspa
-
For more information on JIRA, see: http://www.atlassian.com/ software/jira



Reply via email to