[ 
https://issues.apache.org/jira/browse/KNOX-3374?focusedWorklogId=1028799&page=com.atlassian.jira.plugin.system.issuetabpanels:worklog-tabpanel#worklog-1028799
 ]

ASF GitHub Bot logged work on KNOX-3374:
----------------------------------------

                Author: ASF GitHub Bot
            Created on: 08/Jul/26 17:50
            Start Date: 08/Jul/26 17:50
    Worklog Time Spent: 10m 
      Work Description: handavid commented on PR #1300:
URL: https://github.com/apache/knox/pull/1300#issuecomment-4917633522

   @hanicz I'm not sure this is the right approach. If the Subject in the 
`AbstractAuthResource` already has the correct roles, then I think it makes 
more sense to remove the role lookup from there instead. This change confuses 
the issue of whether the LDAP Proxy will return groups or roles. This 
hard-codes the `getUserGroups` method to return groups even if the 
configuration includes the roles lookup interceptor.




Issue Time Tracking
-------------------

    Worklog Id:     (was: 1028799)
    Time Spent: 40m  (was: 0.5h)

> Inherited roles missing from auth headers when LDAP roles-lookup interceptor 
> is active
> --------------------------------------------------------------------------------------
>
>                 Key: KNOX-3374
>                 URL: https://issues.apache.org/jira/browse/KNOX-3374
>             Project: Apache Knox
>          Issue Type: Bug
>          Components: Server
>    Affects Versions: 3.0.0
>            Reporter: Tamás Hanicz
>            Assignee: Tamás Hanicz
>            Priority: Major
>             Fix For: 3.0.0
>
>          Time Spent: 40m
>  Remaining Estimate: 0h
>




--
This message was sent by Atlassian Jira
(v8.20.10#820010)

Reply via email to