Colm O hEigeartaigh created SYNCOPE-883:
-------------------------------------------

             Summary: Can't access REST API via browser
                 Key: SYNCOPE-883
                 URL: https://issues.apache.org/jira/browse/SYNCOPE-883
             Project: Syncope
          Issue Type: Bug
    Affects Versions: 2.0.0-M4
            Reporter: Colm O hEigeartaigh
             Fix For: 2.0.0


With the latest 2.0.0-SNAPSHOT, I noticed that accessing the REST API without 
supplying a username/password returns 403 as opposed to the old 401.

wget http://localhost:9080/syncope/rest/users

--2016-06-28 15:40:01--  http://localhost:9080/syncope/rest/users
Resolving localhost (localhost)... 127.0.0.1
Connecting to localhost (localhost)|127.0.0.1|:9080... connected.
HTTP request sent, awaiting response... 403
2016-06-28 15:40:01 ERROR 403: (no description).

Whereas with 1.2.7:

wget http://localhost:9080/syncope/rest/users
--2016-06-28 15:29:42--  http://localhost:9080/syncope/rest/users
Resolving localhost (localhost)... 127.0.0.1
Connecting to localhost (localhost)|127.0.0.1|:9080... connected.
HTTP request sent, awaiting response... 401 Unauthorized

Username/Password Authentication Failed.

This means that if you open up a web browser and try to access say:

http://localhost:9080/syncope/rest/users

a pop-up windows does not appear for the user to enter the user/password. 



--
This message was sent by Atlassian JIRA
(v6.3.4#6332)

Reply via email to