WSO2 Identity Server 5.1.0 Milestone 4 Released!
Date: 25th July 2015The WSO2 Identity Server team is pleased to announce
the 4th Milestone of WSO2 Identity Server 5.1.0. You can download this
distribution from https://github.com/wso2/product-is/releases/tag/v5.1.0-m4

Following list [1] contains all bug fixes and improvements available with
this milestone. We encourage you to report issues, improvements and feature
requests regarding WSO2 Identity Server through the public WSO2 Identity
Server JIRA <https://wso2.org/jira/browse/IDENTITY>

~ The WSO2 Identity Server Team ~



[1] Release Notes - WSO2 Identity Server - Version 5.1.0-M4

Bug

   - [IDENTITY-343 <https://wso2.org/jira/browse/IDENTITY-343>] - Multiple
   User Profiles feature is broken in IS 5.0.0
   - [IDENTITY-383 <https://wso2.org/jira/browse/IDENTITY-383>] - Clicking
   the 'Cancel' button on the approval stage of OpenID, does not redirect to
   the application
   - [IDENTITY-688 <https://wso2.org/jira/browse/IDENTITY-688>] - Normal
   admin user can view Super admin users via Super admin role
   - [IDENTITY-838 <https://wso2.org/jira/browse/IDENTITY-838>] -
   Inconsistencies in password validation between Self Sign Up and Admin
   created users
   - [IDENTITY-896 <https://wso2.org/jira/browse/IDENTITY-896>] - Invalid
   error message for secondary domain users password change "Ask Password from
   user"
   - [IDENTITY-946 <https://wso2.org/jira/browse/IDENTITY-946>] - Add new
   Role appears when all user stores read only
   - [IDENTITY-1071 <https://wso2.org/jira/browse/IDENTITY-1071>] - Expiry
   Times were managed at multiple places prior to IS 5.0.0
   - [IDENTITY-1081 <https://wso2.org/jira/browse/IDENTITY-1081>] - Bouncy
   Castle cannot be found by OpenSAML.
   - [IDENTITY-1555 <https://wso2.org/jira/browse/IDENTITY-1555>] - Error
   starting the server with informix db
   - [IDENTITY-1608 <https://wso2.org/jira/browse/IDENTITY-1608>] -
   Highlighted area should be a tick box when applying OTP, user get confused
   when there is a text box.
   - [IDENTITY-1615 <https://wso2.org/jira/browse/IDENTITY-1615>] - Unable
   to login to carbon console as a tenant while using a shared JDBC user store
   - [IDENTITY-1770 <https://wso2.org/jira/browse/IDENTITY-1770>] - When
   assigning roles, if a user clicks on a Back button it will not refresh the
   assigned roles frame
   - [IDENTITY-1805 <https://wso2.org/jira/browse/IDENTITY-1805>] - A user
   in a secondary user store having admin privileges, should not be able to
   delete own secondary user store
   - [IDENTITY-1887 <https://wso2.org/jira/browse/IDENTITY-1887>] - Not
   able to un-assign last user from a group using SCIM Rest operation
   - [IDENTITY-1982 <https://wso2.org/jira/browse/IDENTITY-1982>] -
   [intermittent]java.lang.SecurityException: Key Store with a name : <<tenant
   domain>>.jks does not exist exception thrown when loading the tenant
   - [IDENTITY-2100 <https://wso2.org/jira/browse/IDENTITY-2100>] - Single
   log out is broken in WSO2 carbon products.
   - [IDENTITY-2281 <https://wso2.org/jira/browse/IDENTITY-2281>] -
   "passwordHashMethod" property name in the default user-mgt.xml is incorrect.
   - [IDENTITY-2318 <https://wso2.org/jira/browse/IDENTITY-2318>] - Message
   displayed when adding the same role twice to an user, can be improved
   - [IDENTITY-2514 <https://wso2.org/jira/browse/IDENTITY-2514>] - When
   configuring Google as federated authenticator, the username should have to
   enable as email. Otherwise following exception throws.
   - [IDENTITY-2526 <https://wso2.org/jira/browse/IDENTITY-2526>] - INFO
   log : "Already added Signed-Up for the OpenId null" when signing up users
   - [IDENTITY-2533 <https://wso2.org/jira/browse/IDENTITY-2533>] - Issues
   with Authentication framework and SAML2 SSO
   - [IDENTITY-2541 <https://wso2.org/jira/browse/IDENTITY-2541>] - Issue
   with Dashboard and Facebook login
   - [IDENTITY-2554 <https://wso2.org/jira/browse/IDENTITY-2554>] - When
   having multiple user stores if the primary user store has
   "ReadGroups=false" then user roles are not shown for all the user stores
   - [IDENTITY-2564 <https://wso2.org/jira/browse/IDENTITY-2564>] -
   [IS][APIM] When users are created via "UserAdmin" service, they cannot be
   locked or unlocked via "UserIdentityManagementAdminService" service
   - [IDENTITY-2590 <https://wso2.org/jira/browse/IDENTITY-2590>] - Tenant
   separation is not applied on OAuth applications
   - [IDENTITY-2619 <https://wso2.org/jira/browse/IDENTITY-2619>] - Logout
   in Tenancy doesn't work if it use Entity Id to specify tenant
   - [IDENTITY-2677 <https://wso2.org/jira/browse/IDENTITY-2677>] - Error
   adding IdP from file when empty ProvisioningConnecterConfigs given
   - [IDENTITY-2734 <https://wso2.org/jira/browse/IDENTITY-2734>] - User is
   getting created though the required claim mapping is not configured
   - [IDENTITY-2772 <https://wso2.org/jira/browse/IDENTITY-2772>] -
   Intermittent issue during the SAML SSO load test - Null Pointer is thrown
   - [IDENTITY-2774 <https://wso2.org/jira/browse/IDENTITY-2774>] - Issues
   with sending tenantDomain to Authentication Framework
   - [IDENTITY-2782 <https://wso2.org/jira/browse/IDENTITY-2782>] - SAMLSSO
   returns RelayState:null with the SAMLResponse when SP doesn't send a
   RelayState
   - [IDENTITY-2805 <https://wso2.org/jira/browse/IDENTITY-2805>] - unique
   key violation when adding users while having two or more custome
   provisioning connectors. ie adding data to IDP_PROVISIONING_ENTITY table
   - [IDENTITY-2806 <https://wso2.org/jira/browse/IDENTITY-2806>] - AS
   install to IS as feature - AAR file upload redirect to Identity server
   Policy Administration page
   - [IDENTITY-2810 <https://wso2.org/jira/browse/IDENTITY-2810>] -
   UserStore configs added through UI does not set username regex properties
   correctly
   - [IDENTITY-2822 <https://wso2.org/jira/browse/IDENTITY-2822>] - Issue
   with selective role based provisioning to GoogleApps
   - [IDENTITY-2823 <https://wso2.org/jira/browse/IDENTITY-2823>] - SCIM
   query issues
   - [IDENTITY-2827 <https://wso2.org/jira/browse/IDENTITY-2827>] - When
   the Userstore is an external openldap and when a user tries to add a role
   without a user via scim, still it will create an entry for the given role
   somewhere
   - [IDENTITY-2875 <https://wso2.org/jira/browse/IDENTITY-2875>] - "NULL
   not allowed for column "UM_ROLE_ID"; SQL statement" thrown when assigning
   invalid internal role via user admin service
   - [IDENTITY-2876 <https://wso2.org/jira/browse/IDENTITY-2876>] - App
   role created when adding a SP does not get cleared when SP creation failed
   - [IDENTITY-2889 <https://wso2.org/jira/browse/IDENTITY-2889>] -
   [Intermittent] NullPointerException while logout when SSO configured with
   multiple WSO2 Products
   - [IDENTITY-2893 <https://wso2.org/jira/browse/IDENTITY-2893>] -
   Multiple Provisioning Connectors configured for Resident Service Provider -
   Outbound Provisioning - update/delete does not work properly
   - [IDENTITY-2899 <https://wso2.org/jira/browse/IDENTITY-2899>] - PDP is
   not properly initiated with attribute finder modules
   - [IDENTITY-2902 <https://wso2.org/jira/browse/IDENTITY-2902>] - When
   scim active claim is present in a user, and the value is true, User
   operation listeners do not get fired. after scim user operatin listner
   - [IDENTITY-2906 <https://wso2.org/jira/browse/IDENTITY-2906>] -
   java.lang.NullPointerException thrown when login out from travelocity.com
   - [IDENTITY-2909 <https://wso2.org/jira/browse/IDENTITY-2909>] - Cannot
   create users
   - [IDENTITY-2912 <https://wso2.org/jira/browse/IDENTITY-2912>] -
   OpenIDConnect prompt=login login is not working
   - [IDENTITY-2913 <https://wso2.org/jira/browse/IDENTITY-2913>] - OpenID
   prompt=none is not working
   - [IDENTITY-2927 <https://wso2.org/jira/browse/IDENTITY-2927>] - Unable
   to sign up to www.opendaylight.org as a developer (
   https://identity.opendaylight.org/carbon/admin/login.jsp)
   - [IDENTITY-2933 <https://wso2.org/jira/browse/IDENTITY-2933>] - Account
   Confirmation : Username field in the e-mail which is sent to client should
   be URL encoded
   - [IDENTITY-2940 <https://wso2.org/jira/browse/IDENTITY-2940>] - [JIT]
   Default claim value specified in advanced claim configuration, is not set
   in user profile
   - [IDENTITY-2946 <https://wso2.org/jira/browse/IDENTITY-2946>] - Updated
   code to prevent continuing provisioning in the blocking mode
   - [IDENTITY-2970 <https://wso2.org/jira/browse/IDENTITY-2970>] - Bulk
   Import option is not working in IS 5.0
   - [IDENTITY-2985 <https://wso2.org/jira/browse/IDENTITY-2985>] -
   [Password Policy] Always display the default pattern error message.
   - [IDENTITY-2998 <https://wso2.org/jira/browse/IDENTITY-2998>] - Whole
   Policy Cache must not get reloaded when a single policy is updated/added
   - [IDENTITY-3002 <https://wso2.org/jira/browse/IDENTITY-3002>] - Invalid
   attribute validation when adding claim dialect
   - [IDENTITY-3010 <https://wso2.org/jira/browse/IDENTITY-3010>] - Second
   login attempt to SaaS application fails for tenant user's when
   UseAuthenticatedUserDomainCrypto property enabled
   - [IDENTITY-3015 <https://wso2.org/jira/browse/IDENTITY-3015>] - WSO2IS
   can only build LogoutRequests using entity format
   - [IDENTITY-3030 <https://wso2.org/jira/browse/IDENTITY-3030>] - Token
   generate failed after 3 success attempts with EnableAssertions is true in
   identity.xml.
   - [IDENTITY-3031 <https://wso2.org/jira/browse/IDENTITY-3031>] - SAML2
   Logout Response/Logout Request does not contains the desination url
   - [IDENTITY-3039 <https://wso2.org/jira/browse/IDENTITY-3039>] - Email
   notification not being when a user is created with email id as user id.
   - [IDENTITY-3053 <https://wso2.org/jira/browse/IDENTITY-3053>] - Token
   Expiration/Creation is occasionally violating unique key constraint.
   - [IDENTITY-3055 <https://wso2.org/jira/browse/IDENTITY-3055>] -
   Scope=openid returns an id_token in client credential grant type which is
   not correct
   - [IDENTITY-3056 <https://wso2.org/jira/browse/IDENTITY-3056>] -
   Destination missing in SingleLogOutResponse & Default claim values are not
   setting when JIT provisioning.
   - [IDENTITY-3067 <https://wso2.org/jira/browse/IDENTITY-3067>] -
   sessionDataKeyConsent is not distributed with OAuth cache in a cluster
   - [IDENTITY-3072 <https://wso2.org/jira/browse/IDENTITY-3072>] - unable
   to change password as end user using /dashboard application
   - [IDENTITY-3075 <https://wso2.org/jira/browse/IDENTITY-3075>] - Service
   provider instance referenced in AuthenticationContext does not have
   permissions populated in it
   - [IDENTITY-3078 <https://wso2.org/jira/browse/IDENTITY-3078>] -
   Performance overhead when adding a user to a group via SCIM
   - [IDENTITY-3085 <https://wso2.org/jira/browse/IDENTITY-3085>] - In
   PassiveSTS having an @ character in the name identifier tries to load the
   tenant realm
   - [IDENTITY-3089 <https://wso2.org/jira/browse/IDENTITY-3089>] -
   NullPointerException when setting SAML SSO passiveAuth to true
   - [IDENTITY-3098 <https://wso2.org/jira/browse/IDENTITY-3098>] - Test
   Facebook authenticator and Google authenticator with latest APIs
   - [IDENTITY-3099 <https://wso2.org/jira/browse/IDENTITY-3099>] -
   unlockUserAccount in UserIdentityManagementAdminService does not check
   whether mail notification is enable or disable
   - [IDENTITY-3100 <https://wso2.org/jira/browse/IDENTITY-3100>] -
   unlockUserAccount/lockUserAccount in UserIdentityManagementAdminService
   does not set the unlockTime to 0 if there is unlockTime
   - [IDENTITY-3106 <https://wso2.org/jira/browse/IDENTITY-3106>] - "You
   have not privilege to assign user to Admin permission role" message is
   given even if the admin role is not selected
   - [IDENTITY-3108 <https://wso2.org/jira/browse/IDENTITY-3108>] - Can't
   create SP using URL as SP name and giving invalid error message
   - [IDENTITY-3109 <https://wso2.org/jira/browse/IDENTITY-3109>] - NPE
   when invoking Revoke API with an invalid encoded key
   - [IDENTITY-3126 <https://wso2.org/jira/browse/IDENTITY-3126>] - Blank
   page is displayed when the user clicks cancel at the google login page when
   doing federated authentication
   - [IDENTITY-3132 <https://wso2.org/jira/browse/IDENTITY-3132>] - 'Key
   length exceeded' error on CON_APP_KEY of IDN_OAUTH2_ACCESS_TOKEN table in
   ORACLE DB
   - [IDENTITY-3139 <https://wso2.org/jira/browse/IDENTITY-3139>] - Issue
   in password recovery - It is possible to reset password even using older
   email links
   - [IDENTITY-3141 <https://wso2.org/jira/browse/IDENTITY-3141>] - Stop
   SAMLRequest redirecting to the authenticationendpoint url by default
   - [IDENTITY-3142 <https://wso2.org/jira/browse/IDENTITY-3142>] - UX
   Issue - JIT should be automatically enabled when Outbound provisioning is on
   - [IDENTITY-3161 <https://wso2.org/jira/browse/IDENTITY-3161>] - SP
   initiated SSO, Bad request if user provides incorrect username or password
   - [IDENTITY-3164 <https://wso2.org/jira/browse/IDENTITY-3164>] -
   <Property name="MemberOfAttribute">memberOf</Property> should be added to
   Default active directory configuration
   - [IDENTITY-3165 <https://wso2.org/jira/browse/IDENTITY-3165>] - Passive
   STS doesn't work properly with tenantDomain parameter
   - [IDENTITY-3171 <https://wso2.org/jira/browse/IDENTITY-3171>] -
   AttributeConsumingServiceIndex is not populated propertly by the WSO2IS
   - [IDENTITY-3180 <https://wso2.org/jira/browse/IDENTITY-3180>] - SAML2
   SSO Application Authenticator Logout Request signing doesn't work in
   REDIRECT binding
   - [IDENTITY-3194 <https://wso2.org/jira/browse/IDENTITY-3194>] - Remove
   'AccessTokenDefaultValidityPeriod' from identity.xml as it seems no longer
   used
   - [IDENTITY-3200 <https://wso2.org/jira/browse/IDENTITY-3200>] - Use SQL
   LCASE() to compare AUTHZ_USER in IDN_OAUTH2_ACCESS_TOKEN
   - [IDENTITY-3205 <https://wso2.org/jira/browse/IDENTITY-3205>] - Cannot
   view service providers when login as email type user when email username
   not enabled in carbon.xml
   - [IDENTITY-3210 <https://wso2.org/jira/browse/IDENTITY-3210>] -
   Updating challenge question of user does not reflect the updated question
   value in user profile in management console.
   - [IDENTITY-3215 <https://wso2.org/jira/browse/IDENTITY-3215>] - Comma
   treated as a special multivalued attribute separator character in code base
   - [IDENTITY-3220 <https://wso2.org/jira/browse/IDENTITY-3220>] - Error
   when trying to log out from dashbaord after session time outs
   - [IDENTITY-3222 <https://wso2.org/jira/browse/IDENTITY-3222>] -
   Challenge questions set through setChallengeQuestions operation are not
   shown in dashbaord
   - [IDENTITY-3228 <https://wso2.org/jira/browse/IDENTITY-3228>] - Invalid
   error log message when Email Username is enabled.
   - [IDENTITY-3244 <https://wso2.org/jira/browse/IDENTITY-3244>] -
   relyingParty parameter has become mandatory in /commonauth endpoint after
   IS 5.0 SP 01
   - [IDENTITY-3253 <https://wso2.org/jira/browse/IDENTITY-3253>] - Account
   association does not work with User ID Claim mapping
   - [IDENTITY-3264 <https://wso2.org/jira/browse/IDENTITY-3264>] -
   getLDAPRoleListOfUser not working with member-Attribute when User
   DN-Pattern is empty
   - [IDENTITY-3291 <https://wso2.org/jira/browse/IDENTITY-3291>] - When
   user account is locked, even after unlocking the account from management
   console, the user cannot login due to caching issue
   - [IDENTITY-3292 <https://wso2.org/jira/browse/IDENTITY-3292>] - When
   account lock feature is enabled, unchecking the accountLock claim when
   editing user profile and saving the profile causes inserting empty value to
   data table in JDBC
   - [IDENTITY-3298 <https://wso2.org/jira/browse/IDENTITY-3298>] - Role
   permissions are not added to the logged in user
   - [IDENTITY-3306 <https://wso2.org/jira/browse/IDENTITY-3306>] - SCIM
   user PUT operations don't work in expected way
   - [IDENTITY-3307 <https://wso2.org/jira/browse/IDENTITY-3307>] - Carbon
   4.2.0 User Manager, users for roles are not shown in Carbon UI (Browser)
   correctly
   - [IDENTITY-3312 <https://wso2.org/jira/browse/IDENTITY-3312>] -
   Possible error in the chpasswd script
   - [IDENTITY-3330 <https://wso2.org/jira/browse/IDENTITY-3330>] - Adding
   a separate claim type for "passivests" (in FrameworkConstants.RequestType
   class) to be used with getDialectUri method
   - [IDENTITY-3334 <https://wso2.org/jira/browse/IDENTITY-3334>] - No logs
   statement when unlocking a user account.
   - [IDENTITY-3335 <https://wso2.org/jira/browse/IDENTITY-3335>] - IDN
   tables can't be separate from UM tables due to foreign key constraints from
   IDN scripts
   - [IDENTITY-3343 <https://wso2.org/jira/browse/IDENTITY-3343>] - Error
   log occurs when invoking an API
   - [IDENTITY-3346 <https://wso2.org/jira/browse/IDENTITY-3346>] - Can't
   edit service provider
   - [IDENTITY-3358 <https://wso2.org/jira/browse/IDENTITY-3358>] -
   NullPointerException throws when the user clicks accept at the google login
   page when doing federated authentication
   - [IDENTITY-3364 <https://wso2.org/jira/browse/IDENTITY-3364>] - Login
   page of the authentication framework should be improved
   - [IDENTITY-3369 <https://wso2.org/jira/browse/IDENTITY-3369>] - Some
   Databases are not created via -Dsetup when point the JDBCPersistenceManager
   from WSO2CarbonDB to another data sources in applicationAuthentication.xml.
   - [IDENTITY-3371 <https://wso2.org/jira/browse/IDENTITY-3371>] - Ask
   Password from user scenario doesn't work for tenant users when user is
   created with scim call
   - [IDENTITY-3372 <https://wso2.org/jira/browse/IDENTITY-3372>] - Error
   sending emails to tenant users through DefaultEmailSendingModule
   - [IDENTITY-3373 <https://wso2.org/jira/browse/IDENTITY-3373>] - Claim
   URIs should be mapped to appropriate LDAP attributes
   - [IDENTITY-3374 <https://wso2.org/jira/browse/IDENTITY-3374>] -
   NumberFormatException exception thrown several times during openid connect
   flow
   - [IDENTITY-3377 <https://wso2.org/jira/browse/IDENTITY-3377>] - IS
   dashboard Account Recovery gadget gives error when only 1 challenge
   question is set for user
   - [IDENTITY-3378 <https://wso2.org/jira/browse/IDENTITY-3378>] -
   Dashboard Account recovery gadget doesn't work properly when sending
   requests from tenants
   - [IDENTITY-3382 <https://wso2.org/jira/browse/IDENTITY-3382>] - Can't
   logout from travelocity.com
   - [IDENTITY-3384 <https://wso2.org/jira/browse/IDENTITY-3384>] -
   Specifying NONE as ID Token signature algorithm does not work
   - [IDENTITY-3385 <https://wso2.org/jira/browse/IDENTITY-3385>] - Access
   Token hash value (at_hash) is calculated incorrectly
   - [IDENTITY-3394 <https://wso2.org/jira/browse/IDENTITY-3394>] - When no
   provisioning config properties are available, provisioning connector cannot
   be enabled (For custom provisioning connectors)
   - [IDENTITY-3395 <https://wso2.org/jira/browse/IDENTITY-3395>] - XACML
   Response - Cannot get policy ID list
   - [IDENTITY-3398 <https://wso2.org/jira/browse/IDENTITY-3398>] -
   ForceAuth parameter is not shown correctly in saml request as configured.
   - [IDENTITY-3404 <https://wso2.org/jira/browse/IDENTITY-3404>] - OpenID
   Connect userinfo endpoint throws exception on multiple scopes
   - [IDENTITY-3405 <https://wso2.org/jira/browse/IDENTITY-3405>] - Error
   thrown when canceling Attribute Selection in PAP UI
   - [IDENTITY-3407 <https://wso2.org/jira/browse/IDENTITY-3407>] -
   Secondary user store users can't log in to the dashboard.
   - [IDENTITY-3414 <https://wso2.org/jira/browse/IDENTITY-3414>] -
   Exception when pointing to Oracle 11g with latest oracle.sql
   - [IDENTITY-3417 <https://wso2.org/jira/browse/IDENTITY-3417>] - When
   password change using dashboard goes wrong, an error message is not shown
   - [IDENTITY-3427 <https://wso2.org/jira/browse/IDENTITY-3427>] - [Carbon
   Login] Exception occurs while try to login to the server

Improvement

   - [IDENTITY-1045 <https://wso2.org/jira/browse/IDENTITY-1045>] - SAML
   2.0 Web Browser SSO Response's Assertion element must be signed by default
   - [IDENTITY-1499 <https://wso2.org/jira/browse/IDENTITY-1499>] - If user
   store manager is readonly - by default it should change to the JDBC based
   identity data store
   - [IDENTITY-2562 <https://wso2.org/jira/browse/IDENTITY-2562>] - User
   Store domain must be sent with SAML subject identifier. This must be on/off
   using SP configuration
   - [IDENTITY-2573 <https://wso2.org/jira/browse/IDENTITY-2573>] - OpenID
   Connect Core Specification Compliance
   - [IDENTITY-2681 <https://wso2.org/jira/browse/IDENTITY-2681>] - IS
   Dashboard doesn't show any message while user registration saying if that
   is successfull or not
   - [IDENTITY-2719 <https://wso2.org/jira/browse/IDENTITY-2719>] -
   Improving performance in OpenID flow in dumb mode
   - [IDENTITY-2756 <https://wso2.org/jira/browse/IDENTITY-2756>] -
   Decoupling of Notification Listener
   - [IDENTITY-2829 <https://wso2.org/jira/browse/IDENTITY-2829>] - Show
   original error message throws from provisioning connectors
   - [IDENTITY-2895 <https://wso2.org/jira/browse/IDENTITY-2895>] - No
   pagination for Service Provider list
   - [IDENTITY-2900 <https://wso2.org/jira/browse/IDENTITY-2900>] - Need to
   provide a property for URLs in standard authenticators and provisioning
   connectors
   - [IDENTITY-3088 <https://wso2.org/jira/browse/IDENTITY-3088>] - A
   configuration needed to disable claim caching in JWTTokenGenerator
   - [IDENTITY-3232 <https://wso2.org/jira/browse/IDENTITY-3232>] -
   Non-informative error message when creating user password
   - [IDENTITY-3262 <https://wso2.org/jira/browse/IDENTITY-3262>] - Problem
   when accessing UserInformationRecoveryService in SaaS mode
   - [IDENTITY-3263 <https://wso2.org/jira/browse/IDENTITY-3263>] - Support
   Username rename for Custom Userstore Managers by updating username in SCIM
   - [IDENTITY-3401 <https://wso2.org/jira/browse/IDENTITY-3401>] - Remove
   authorization form changePasswordByUser in UserAdmin service

Patch

   - [IDENTITY-2560 <https://wso2.org/jira/browse/IDENTITY-2560>] - Fix
   thrift authenticator to work with LB use cases.
   - [IDENTITY-2751 <https://wso2.org/jira/browse/IDENTITY-2751>] -
   Redirecting to externalLogout page when IdP do support SLO
   - [IDENTITY-2853 <https://wso2.org/jira/browse/IDENTITY-2853>] - Add
   Issuer to Single Logout Request (Liferay Compatibility)
   - [IDENTITY-3103 <https://wso2.org/jira/browse/IDENTITY-3103>] - WSO2IS
   does not work properly for the LDAP users with DN which contain special
   characters such as "\ , +, "
   - [IDENTITY-3151 <https://wso2.org/jira/browse/IDENTITY-3151>] - Update
   user profile in Identity Server 5.0.0 is not working properly when the
   Database is oracle
   - [IDENTITY-3181 <https://wso2.org/jira/browse/IDENTITY-3181>] -
   Federated Logout Request Subject's NameID format should not be 'entity'
   - [IDENTITY-3293 <https://wso2.org/jira/browse/IDENTITY-3293>] - Support
   for ip-range function for XACML
   - [IDENTITY-3318 <https://wso2.org/jira/browse/IDENTITY-3318>] - Error
   when accessing the http endpoint of a service secured with UT security
   policy
   - [IDENTITY-3321 <https://wso2.org/jira/browse/IDENTITY-3321>] - Error
   is thrown at backend when accessing the management console through Chrome
   - [IDENTITY-3322 <https://wso2.org/jira/browse/IDENTITY-3322>] - Issues
   with SCIM Group Updates
   - [IDENTITY-3327 <https://wso2.org/jira/browse/IDENTITY-3327>] - JWT
   json structure changed from string based comma separated multi-values to
   array based multi-values
   - [IDENTITY-3331 <https://wso2.org/jira/browse/IDENTITY-3331>] - Tenant
   List Dropdown in SSO Login Page - Make the Key Manager Algorithm
   Configurable in Mutual SSL Client
   - [IDENTITY-3337 <https://wso2.org/jira/browse/IDENTITY-3337>] -
   Attribute get repeated in LDAP when perform Update User from scim.
   - [IDENTITY-3340 <https://wso2.org/jira/browse/IDENTITY-3340>] - Unable
   to call User Manager APIs through Carbon Context in tenant mode while Java
   security is enabled
   - [IDENTITY-3345 <https://wso2.org/jira/browse/IDENTITY-3345>] - SSO
   redirection makes user unable to logout for unauthorized users
   - [IDENTITY-3347 <https://wso2.org/jira/browse/IDENTITY-3347>] -
   Separate HTML from Java in Passive STS redirection page
   - [IDENTITY-3356 <https://wso2.org/jira/browse/IDENTITY-3356>] - JIT
   fails if registered IDP associate with file based SP
   - [IDENTITY-3408 <https://wso2.org/jira/browse/IDENTITY-3408>] - Bulk
   user import feature improvement
   - [IDENTITY-3409 <https://wso2.org/jira/browse/IDENTITY-3409>] - Access
   Tokens are not revoked, if user is deleted from secondary user store
   - [IDENTITY-3420 <https://wso2.org/jira/browse/IDENTITY-3420>] - Bug in
   Deny Unless Permit/Permit Unless Deny Policy combining algorithm
   implementation
   - [IDENTITY-3421 <https://wso2.org/jira/browse/IDENTITY-3421>] - Claim
   values that are posted back from WSO2 passivests are not HTML encoded

Security Vulnerability

   - [IDENTITY-3283 <https://wso2.org/jira/browse/IDENTITY-3283>] - If an
   authorization code is used more than once, IS does not revoke all tokens
   previously issued based on that authorization code

Task

   - [IDENTITY-2042 <https://wso2.org/jira/browse/IDENTITY-2042>] - Remove
   unwanted web service API method from UserAdmin Service
   - [IDENTITY-2611 <https://wso2.org/jira/browse/IDENTITY-2611>] -
   UsernameWithEmailJavaScriptRegEx missing in default user-mgt.xml
   - [IDENTITY-2693 <https://wso2.org/jira/browse/IDENTITY-2693>] - Update
   IS dashboard
   - [IDENTITY-2885 <https://wso2.org/jira/browse/IDENTITY-2885>] -
   Duplicate properties to indicate versions in carbon-identity root POM
   - [IDENTITY-3389 <https://wso2.org/jira/browse/IDENTITY-3389>] - Move
   dependency versions from component level poms to master pom
   - [IDENTITY-3390 <https://wso2.org/jira/browse/IDENTITY-3390>] - All DB
   Scripts should be consistent with H2 DB Script

Wish

   - [IDENTITY-3000 <https://wso2.org/jira/browse/IDENTITY-3000>] -
   IdentityMgtConfig.java does not contain a method to get
   UserAccount.Recovery.Enable property

Sub-task

   - [IDENTITY-2532 <https://wso2.org/jira/browse/IDENTITY-2532>] - SSO
   Issue with User Dashoard
   - [IDENTITY-2536 <https://wso2.org/jira/browse/IDENTITY-2536>] - Issue
   with setting 'http://wso2.org/claims/emailaddress' as 'Subject Claim
   URI' and Enabling 'SaaS App'
   - [IDENTITY-3435 <https://wso2.org/jira/browse/IDENTITY-3435>] - Get
   Server URL from IdentityUtils


-- 
Regards,


*Darshana Gunawardana*Senior Software Engineer
WSO2 Inc.; http://wso2.com

*E-mail: [email protected] <[email protected]>*
*Mobile: +94718566859*Lean . Enterprise . Middleware
_______________________________________________
Dev mailing list
[email protected]
http://wso2.org/cgi-bin/mailman/listinfo/dev

Reply via email to