Keith Wall created QPID-7047:
--------------------------------

             Summary: SaslServlet should invalidate the HTTP session in the 
event of authentication/authorisation failure
                 Key: QPID-7047
                 URL: https://issues.apache.org/jira/browse/QPID-7047
             Project: Qpid
          Issue Type: Improvement
          Components: Java Broker
            Reporter: Keith Wall


If SASL authentication over HTTP fails, the HTTP session is currently retained. 
 This should be changed so that it is automatically invalidated on these two 
paths.



--
This message was sent by Atlassian JIRA
(v6.3.4#6332)

---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]

Reply via email to