[ 
https://issues.apache.org/jira/browse/ISIS-746?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
 ]

Dan Haywood updated ISIS-746:
-----------------------------

    Fix Version/s:     (was: security-shiro-1.5.0)
                   security-shiro-1.4.2

> When multiple realms configured for Shiro, should be more intelligent about 
> obtaining roles from those realms
> -------------------------------------------------------------------------------------------------------------
>
>                 Key: ISIS-746
>                 URL: https://issues.apache.org/jira/browse/ISIS-746
>             Project: Isis
>          Issue Type: Bug
>    Affects Versions: security-shiro-1.4.0
>            Reporter: Dan Haywood
>            Assignee: Dan Haywood
>            Priority: Minor
>             Fix For: security-shiro-1.4.2
>
>
> We currently attempt to obtain roles for realms that did *not* authenticate 
> the token.
> Ideally, should only ask for roles from the realms that authenticated the 
> token.
> As a workaround, should (as currently) query all realms but then catch and 
> ignore any exceptions thrown by those realms that did not authenticate the 
> token.



--
This message was sent by Atlassian JIRA
(v6.2#6252)

Reply via email to