Uploaded image for project: 'Runtime'
  1. Runtime
  2. RUNTIME-2441

AuthenticateAction should reject case insensitive login

XMLWordPrintable

    • Icon: Improvement Improvement
    • Resolution: Fixed
    • Icon: Major Major
    • 4.0RC4
    • None
    • None
    • None

      Some credential providers (such as CAS on LDAP) may return logins that are not exactly matching the LDAP : "ced", "Ced", "CED", "cED" are all the same user ; but we will finally fail somewhere (such as in CASCredentialProvider).
      So we have to reject logins that are not the login stored in the UserManager

            Unassigned Unassigned
            raphael Raphaƫl Franchet
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

              Created:
              Updated:
              Resolved: