Francesco Chicchiriccò created SYNCOPE-1651:
-----------------------------------------------
Summary: Invalid users can be specified in X-Syncope-Delegated-By
Key: SYNCOPE-1651
URL: https://issues.apache.org/jira/browse/SYNCOPE-1651
Project: Syncope
Issue Type: Bug
Components: core
Affects Versions: 2.1.10
Reporter: Francesco Chicchiriccò
Assignee: Francesco Chicchiriccò
Fix For: 2.1.11, 3.0.0
{{X-Syncope-Delegated-By}} header values like {code}user_not_found{code} (where
{{user_not_found}} does not match any exiting user) do not throw any processing
exceptions and result into values like {code}user_found delegated by
user_not_found{code} (where {{user_found}} is the authenticating user) for
Audit and metadata.
--
This message was sent by Atlassian Jira
(v8.20.1#820001)