Return-Path: Delivered-To: apmail-incubator-jspwiki-user-archive@locus.apache.org Received: (qmail 31830 invoked from network); 30 Jan 2008 07:16:07 -0000 Received: from hermes.apache.org (HELO mail.apache.org) (140.211.11.2) by minotaur.apache.org with SMTP; 30 Jan 2008 07:16:07 -0000 Received: (qmail 98275 invoked by uid 500); 30 Jan 2008 07:15:57 -0000 Delivered-To: apmail-incubator-jspwiki-user-archive@incubator.apache.org Received: (qmail 98262 invoked by uid 500); 30 Jan 2008 07:15:57 -0000 Mailing-List: contact jspwiki-user-help@incubator.apache.org; run by ezmlm Precedence: bulk List-Help: List-Unsubscribe: List-Post: List-Id: Reply-To: jspwiki-user@incubator.apache.org Delivered-To: mailing list jspwiki-user@incubator.apache.org Received: (qmail 98252 invoked by uid 99); 30 Jan 2008 07:15:57 -0000 Received: from athena.apache.org (HELO athena.apache.org) (140.211.11.136) by apache.org (qpsmtpd/0.29) with ESMTP; Tue, 29 Jan 2008 23:15:57 -0800 X-ASF-Spam-Status: No, hits=2.0 required=10.0 tests=HTML_MESSAGE,SPF_PASS X-Spam-Check-By: apache.org Received-SPF: pass (athena.apache.org: domain of ksrogers7@gmail.com designates 209.85.132.243 as permitted sender) Received: from [209.85.132.243] (HELO an-out-0708.google.com) (209.85.132.243) by apache.org (qpsmtpd/0.29) with ESMTP; Wed, 30 Jan 2008 07:15:31 +0000 Received: by an-out-0708.google.com with SMTP id b33so33398ana.83 for ; Tue, 29 Jan 2008 23:15:37 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=gamma; h=domainkey-signature:received:received:message-id:date:from:to:subject:in-reply-to:mime-version:content-type:references; bh=3dfcmxoaGSwQFaskRpa3j3PkkACr7QxxQUlCG9uiiyE=; b=Lv7UnX+zI4y37h3hXyMEa1w5CtPTIMjyQIGsfbo1tHWcd5rJIP2zP6xD3t3jUJjd8fok2cw8TRtpqiWmBrVPMcd9QkuXYFJ7IY2IzvJ0lGgF5Jp+7O6JMeSYI8PA/2iGaOMv3NqAR23xYK04QASnMbfyOLQ+xHdodgg4G365f8k= DomainKey-Signature: a=rsa-sha1; c=nofws; d=gmail.com; s=gamma; h=message-id:date:from:to:subject:in-reply-to:mime-version:content-type:references; b=ISHexSsiEOn4xBJTDBrDODZaTSGmbVnyKal+OpZ9vkH8riZfYqYPaywkahZkkYP0RkuP8KV4kBNrjB1ieAdpvqvfpHA8X9fojww5TfFWLohpW6q8XUsl1nPPn/Dapo65O6yCvlfsgkFYAKK3tGgLx1cEJb7FR3oAOYbVhamEq/k= Received: by 10.100.107.7 with SMTP id f7mr904909anc.35.1201677337486; Tue, 29 Jan 2008 23:15:37 -0800 (PST) Received: by 10.100.198.20 with HTTP; Tue, 29 Jan 2008 23:15:37 -0800 (PST) Message-ID: Date: Tue, 29 Jan 2008 23:15:37 -0800 From: "KS Rogers" To: jspwiki-user@incubator.apache.org Subject: Re: unable to login into jspwiki with jboss container authentication In-Reply-To: <479D9261.3040706@gmail.com> MIME-Version: 1.0 Content-Type: multipart/alternative; boundary="----=_Part_11393_4686391.1201677337479" References: <479D9261.3040706@gmail.com> X-Virus-Checked: Checked by ClamAV on apache.org ------=_Part_11393_4686391.1201677337479 Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: 7bit Content-Disposition: inline Hi Milton, Thank you for a very very detailed answer. After turning on the detailed logging, as you suggested, I found that JBOSS is very case sensitive with the application name in security policy. After I fixed that, I was able to login. However - one question is for the users that I have manually created the names/passwords in users.properties and roles.properties, I am able to login but how do I allow new users to be created on their own? The 'create user' page is kind of disabled saying that only login is permitted. Am I missing something here? Regards. On Jan 28, 2008 12:29 AM, Milton Taylor wrote: > I have the current version of jspwiki running against JBoss 4.2.2, and > had earlier versions of both working together as well, so it does work! > > Have you also uncommented the relevant section in web.xml? > > What have you got in jboss-web.xml in your war's WEB-INF? Do you have a > specific security domain there? (That matches the domain in the jboss > security configuration? > > Lastly, where have you put the jspwiki.policy file? THings have changed > in 2.6. > > Also, did you realise you have to delete log4j.jar and commons-logging > from your jspwiki WEB-INF folder? [Not related to security but can cause > problems] > > You can turn on detailed security logging in the log4j.xml > file....should tell you why jspwiki can't get happening. Don't do it > from jspwiki.properties > > > KS Rogers wrote: > > Hi, > > > > I am unable to login to jspwiki with jboss container authentication. > Below > > are the log messages that I get. I have enabled the container > authentication > > in jspwiki.properties: > > jspwiki.authorizer = > com.ecyrd.jspwiki.auth.authorize.WebContainerAuthorizer > > > > The authentication in jboss seems to be working fine, but is failing in > > jspwiki. Someone please help... > > > > I have these lines in jboss->users.properties > > rk=Admin, Authenticated, extern, intern, User > > rr=Admin > > tt=Admin > > tt.roles=Admin > > > > I have these lines in jboss->roles.properties > > rk=Admin, Authenticated, extern, intern, User > > rr=Admin > > tt=Admin > > tt.roles=Admin > > > > > > ... > > 2008-01-27 18:17:37,562 [http-0.0.0.0-8080-2] TRACE > > org.jboss.security.auth.login.XMLLoginConfigImpl - End > > getAppConfigurationEntry(JSPWiki-container), > > authInfo=AppConfigurationEntry[]: > > [0] > > LoginModule Class: org.jboss.security.auth.spi.UsersRolesLoginModule > > ControlFlag: LoginModuleControlFlag: required > > Options: > > 2008-01-27 18:17:37,562 [http-0.0.0.0-8080-2] TRACE > > org.jboss.security.auth.spi.UsersRolesLoginModule - initialize, > > instance=@16364317 > > 2008-01-27 18:17:37,562 [http-0.0.0.0-8080-2] TRACE > > org.jboss.security.auth.spi.UsersRolesLoginModule - Security domain: > other > > 2008-01-27 18:17:37,562 [http-0.0.0.0-8080-2] TRACE > > org.jboss.security.auth.spi.UsersRolesLoginModule - findResource: null > > 2008-01-27 18:17:37,562 [http-0.0.0.0-8080-2] TRACE > > org.jboss.security.auth.spi.UsersRolesLoginModule - Properties > > file=file:/C:/install/Server/jboss- > > 4.0.5.GA/server/default/conf/users.properties, defaults=null > > 2008-01-27 18:17:37,562 [http-0.0.0.0-8080-2] DEBUG > > org.jboss.security.auth.spi.UsersRolesLoginModule - Loaded properties, > > users=[rr, tt, rk] > > 2008-01-27 18:17:37,562 [http-0.0.0.0-8080-2] TRACE > > org.jboss.security.auth.spi.UsersRolesLoginModule - findResource: null > > 2008-01-27 18:17:37,562 [http-0.0.0.0-8080-2] TRACE > > org.jboss.security.auth.spi.UsersRolesLoginModule - Properties > > file=file:/C:/install/Server/jboss- > > 4.0.5.GA/server/default/conf/roles.properties, defaults=null > > 2008-01-27 18:17:37,562 [http-0.0.0.0-8080-2] DEBUG > > org.jboss.security.auth.spi.UsersRolesLoginModule - Loaded properties, > > users=[tt.roles, rr, tt, rk] > > 2008-01-27 18:17:37,562 [http-0.0.0.0-8080-2] TRACE > > org.jboss.security.auth.spi.UsersRolesLoginModule - login > > 2008-01-27 18:17:37,562 [http-0.0.0.0-8080-2] TRACE > > org.jboss.security.auth.spi.UsersRolesLoginModule - abort > > 2008-01-27 18:17:37,562 [http-0.0.0.0-8080-2] ERROR > > com.ecyrd.jspwiki.auth.AuthenticationManager - Couldn't log in. > > Message=CallbackHandler does not support: > > javax.security.auth.callback.NameCallback@15e3b92 > > > > > ------=_Part_11393_4686391.1201677337479--