Return-Path: Delivered-To: apmail-continuum-users-archive@www.apache.org Received: (qmail 35530 invoked from network); 7 Dec 2010 13:08:34 -0000 Received: from unknown (HELO mail.apache.org) (140.211.11.3) by 140.211.11.9 with SMTP; 7 Dec 2010 13:08:34 -0000 Received: (qmail 54113 invoked by uid 500); 7 Dec 2010 13:08:33 -0000 Delivered-To: apmail-continuum-users-archive@continuum.apache.org Received: (qmail 53832 invoked by uid 500); 7 Dec 2010 13:08:33 -0000 Mailing-List: contact users-help@continuum.apache.org; run by ezmlm Precedence: bulk List-Help: List-Unsubscribe: List-Post: List-Id: Reply-To: users@continuum.apache.org Delivered-To: mailing list users@continuum.apache.org Received: (qmail 53812 invoked by uid 99); 7 Dec 2010 13:08:32 -0000 Received: from nike.apache.org (HELO nike.apache.org) (192.87.106.230) by apache.org (qpsmtpd/0.29) with ESMTP; Tue, 07 Dec 2010 13:08:32 +0000 X-ASF-Spam-Status: No, hits=1.5 required=10.0 tests=FREEMAIL_FROM,HTML_MESSAGE,RCVD_IN_DNSWL_LOW,SPF_PASS,T_TO_NO_BRKTS_FREEMAIL X-Spam-Check-By: apache.org Received-SPF: pass (nike.apache.org: domain of dr.louis.smith@gmail.com designates 74.125.82.171 as permitted sender) Received: from [74.125.82.171] (HELO mail-wy0-f171.google.com) (74.125.82.171) by apache.org (qpsmtpd/0.29) with ESMTP; Tue, 07 Dec 2010 13:08:25 +0000 Received: by wyb38 with SMTP id 38so14171121wyb.2 for ; Tue, 07 Dec 2010 05:08:04 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=gamma; h=domainkey-signature:mime-version:received:received:in-reply-to :references:date:message-id:subject:from:to:content-type; bh=hVUZiW5CVOWyWekyFv08242kT1Oxx9qjpnVEvrUnuIA=; b=qGeRMRqw1WR8fxZxVB3OJx+0ySuwliHwsPL/MmaGAI0ZucF6gG+uVQZY9qQm4zzoin +GA7WkQWYEllDgmxKOsp5eOMJfgsj4NPCghYkuiOrnn4gcR1KsUWy9KPC5fKiwmTfLkk 0qbPFQelbQgpdpkByJj+AEn/gGPw0WJPf3Gk4= DomainKey-Signature: a=rsa-sha1; c=nofws; d=gmail.com; s=gamma; h=mime-version:in-reply-to:references:date:message-id:subject:from:to :content-type; b=TWNIXm29v5B9s8UZobdagOibY0iLPeNmyTyii4fzNkxf3E+bMdp5WX6Dvic/5eHwGv MNMfQiXT2e7JuQHLn6PXGQ7Cv64wRXFmIRae1FF63dwFp3cXpiqX7nje7LryE5XujwCQ Q+bd20lcBkZHZsHULKi364EU8GOfHKX7ka6WE= MIME-Version: 1.0 Received: by 10.227.154.7 with SMTP id m7mr7230138wbw.211.1291727284527; Tue, 07 Dec 2010 05:08:04 -0800 (PST) Received: by 10.227.61.141 with HTTP; Tue, 7 Dec 2010 05:08:04 -0800 (PST) In-Reply-To: References: Date: Tue, 7 Dec 2010 08:08:04 -0500 Message-ID: Subject: Re: Unusual behavior on continuum/redback From: Louis Smith To: users@continuum.apache.org Content-Type: multipart/alternative; boundary=00163649a499f0ebfa0496d1b1fa X-Virus-Checked: Checked by ClamAV on apache.org --00163649a499f0ebfa0496d1b1fa Content-Type: text/plain; charset=ISO-8859-1 Sorry, wasn't awake yet. Client environment reporting issue: Continuum 1.3.6 under Geronimo 2.2 on redhat Oracle OID 11.1.1.3 for LDAP, My local install (win/geronimo/continuum 1.4.1-SNAPSHOT) against OpenLDAP does NOT show this behavior. Can't use anything other than a GA release at the client site as it is their production development environment. I am going to do a test after hours this evening to use my OpenLDAP with the client's 1.3.6 install and see if it is localized to their Oracle OID configuration. On Tue, Dec 7, 2010 at 7:47 AM, Wendy Smoak wrote: > On Tue, Dec 7, 2010 at 5:33 AM, Louis Smith > wrote: > > > However, if you enter a valid ID, and leave the password field blank - > you > > are logged on as that user with all their rights and access. > > What version of Continuum (and Redback) are you using? My 1.3.6-based > instances don't behave this way. > > The configuration is in conf/security.properties. Perhaps some > combination of the configurable options has allowed this. > > -- > Wendy > -- Dr. Louis Smith, ThD Chief Technology Officer, Kyra InfoTech Colonel, Commemorative Air Force --00163649a499f0ebfa0496d1b1fa--