[
https://issues.apache.org/jira/browse/KNOX-3374?focusedWorklogId=1028799&page=com.atlassian.jira.plugin.system.issuetabpanels:worklog-tabpanel#worklog-1028799
]
ASF GitHub Bot logged work on KNOX-3374:
----------------------------------------
Author: ASF GitHub Bot
Created on: 08/Jul/26 17:50
Start Date: 08/Jul/26 17:50
Worklog Time Spent: 10m
Work Description: handavid commented on PR #1300:
URL: https://github.com/apache/knox/pull/1300#issuecomment-4917633522
@hanicz I'm not sure this is the right approach. If the Subject in the
`AbstractAuthResource` already has the correct roles, then I think it makes
more sense to remove the role lookup from there instead. This change confuses
the issue of whether the LDAP Proxy will return groups or roles. This
hard-codes the `getUserGroups` method to return groups even if the
configuration includes the roles lookup interceptor.
Issue Time Tracking
-------------------
Worklog Id: (was: 1028799)
Time Spent: 40m (was: 0.5h)
> Inherited roles missing from auth headers when LDAP roles-lookup interceptor
> is active
> --------------------------------------------------------------------------------------
>
> Key: KNOX-3374
> URL: https://issues.apache.org/jira/browse/KNOX-3374
> Project: Apache Knox
> Issue Type: Bug
> Components: Server
> Affects Versions: 3.0.0
> Reporter: Tamás Hanicz
> Assignee: Tamás Hanicz
> Priority: Major
> Fix For: 3.0.0
>
> Time Spent: 40m
> Remaining Estimate: 0h
>
--
This message was sent by Atlassian Jira
(v8.20.10#820010)