tomcat-dev mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From Brian Moore <tom...@dsl-64-34-176-53.telocity.com>
Subject fix for bug 558, getUserPrincipal returns wrong user
Date Sat, 09 Dec 2000 04:46:38 GMT
I just entered bug 558, but the bug tool ignored the text in the
"how to reproduce" and "workaround" fields, which included my suggested
bug fix:

How to reproduce:
Access the jsp/security/protected/index.jsp
example then access it again as a different user.
getRemoteUser and getUserPrincipal won't match for the 2nd request.

To fix the bug:
In the initRequest() method of tomcat/core/RequestImpl.java
add the line
principal = null;
in with everything else that gets reset.

Brian Moore


Mime
View raw message