arne anka created ARTEMIS-5661:
----------------------------------

             Summary: ava.lang.SecurityException: User not authorized to access 
operation: updateAndAdd
                 Key: ARTEMIS-5661
                 URL: https://issues.apache.org/jira/browse/ARTEMIS-5661
             Project: ActiveMQ Artemis
          Issue Type: Bug
          Components: Web Console
    Affects Versions: console-1.3.0
            Reporter: arne anka


Due to ARTEMIS-5569 I updated the console war to 1.3.0, but now the log 
overflows with warnings and stacktraces about 

```
WARN  [org.eclipse.jetty.ee9.nested.ContextHandler._console] jolokia-agent: 
Cannot call request logger 
org.jolokia.service.history.HistoryMBeanRequestInterceptor@7d05b6e5: 
java.lang.SecurityException: User not authorized to access operation: 
updateAndAdd
```

Stacktrace:

```
WARN  [org.eclipse.jetty.ee9.nested.ContextHandler._console] jolokia-agent: 
Cannot call request logger 
org.jolokia.service.history.HistoryMBeanRequestInterceptor@7d05b6e5: 
java.lang.SecurityException: User not authorized to access operation: 
updateAndAdd
java.lang.SecurityException: User not authorized to access operation: 
updateAndAdd
at 
org.apache.activemq.artemis.core.server.management.ArtemisMBeanServerGuard.handleInvoke(ArtemisMBeanServerGuard.java:168)
at 
org.apache.activemq.artemis.core.server.management.ArtemisMBeanServerGuard.invoke(ArtemisMBeanServerGuard.java:69)
at 
org.apache.activemq.artemis.core.server.management.ArtemisMBeanServerBuilder$MBeanInvocationHandler.invoke(ArtemisMBeanServerBuilder.java:76)
at jdk.proxy2/jdk.proxy2.$Proxy32.invoke(Unknown Source)
at 
org.jolokia.service.history.HistoryMBeanRequestInterceptor$1.run(HistoryMBeanRequestInterceptor.java:72)
at 
java.base/java.security.AccessController.doPrivileged(AccessController.java:714)
at java.base/javax.security.auth.Subject.doAs(Subject.java:525)
at 
org.jolokia.service.history.HistoryMBeanRequestInterceptor.intercept(HistoryMBeanRequestInterceptor.java:68)
at 
org.jolokia.server.core.backend.BackendManager.intercept(BackendManager.java:131)
at 
org.jolokia.server.core.backend.BackendManager.handleRequest(BackendManager.java:116)
at 
org.jolokia.server.core.http.HttpRequestHandler.executeRequest(HttpRequestHandler.java:205)
at 
org.jolokia.server.core.http.HttpRequestHandler.handlePostRequest(HttpRequestHandler.java:139)
at 
org.jolokia.server.core.http.AgentServlet$1.handleRequest(AgentServlet.java:496)
at 
org.jolokia.server.core.http.AgentServlet.handleSecurely(AgentServlet.java:378)
at org.jolokia.server.core.http.AgentServlet.handle(AgentServlet.java:316)
at org.jolokia.server.core.http.AgentServlet.doPost(AgentServlet.java:275)
at jakarta.servlet.http.HttpServlet.service(HttpServlet.java:520)
at jakarta.servlet.http.HttpServlet.service(HttpServlet.java:587)
at 
org.eclipse.jetty.ee9.servlet.ServletHolder$NotAsync.service(ServletHolder.java:1406)
at org.eclipse.jetty.ee9.servlet.ServletHolder.handle(ServletHolder.java:765)
at 
org.eclipse.jetty.ee9.servlet.ServletHandler$ChainEnd.doFilter(ServletHandler.java:1668)
at 
io.hawt.web.filters.FlightRecordingDownloadFacade.doFilter(FlightRecordingDownloadFacade.java:67)
at org.eclipse.jetty.ee9.servlet.FilterHolder.doFilter(FilterHolder.java:202)
at 
org.eclipse.jetty.ee9.servlet.ServletHandler$Chain.doFilter(ServletHandler.java:1638)
at 
io.hawt.web.auth.ClientRouteRedirectFilter.doFilter(ClientRouteRedirectFilter.java:144)
at org.eclipse.jetty.ee9.servlet.FilterHolder.doFilter(FilterHolder.java:202)
at 
org.eclipse.jetty.ee9.servlet.ServletHandler$Chain.doFilter(ServletHandler.java:1638)
at 
io.hawt.web.auth.AuthenticationFilter.lambda$executeAs$1(AuthenticationFilter.java:165)
at 
java.base/java.security.AccessController.doPrivileged(AccessController.java:714)
at java.base/javax.security.auth.Subject.doAs(Subject.java:525)
at 
io.hawt.web.auth.AuthenticationFilter.executeAs(AuthenticationFilter.java:164)
at io.hawt.web.auth.AuthenticationFilter.doFilter(AuthenticationFilter.java:117)
at org.eclipse.jetty.ee9.servlet.FilterHolder.doFilter(FilterHolder.java:202)
at 
org.eclipse.jetty.ee9.servlet.ServletHandler$Chain.doFilter(ServletHandler.java:1638)
at io.hawt.web.filters.HttpHeaderFilter.doFilter(HttpHeaderFilter.java:56)
at org.eclipse.jetty.ee9.servlet.FilterHolder.doFilter(FilterHolder.java:202)
at 
org.eclipse.jetty.ee9.servlet.ServletHandler$Chain.doFilter(ServletHandler.java:1638)
at io.hawt.web.filters.HttpHeaderFilter.doFilter(HttpHeaderFilter.java:56)
at org.eclipse.jetty.ee9.servlet.FilterHolder.doFilter(FilterHolder.java:202)
at 
org.eclipse.jetty.ee9.servlet.ServletHandler$Chain.doFilter(ServletHandler.java:1638)
at io.hawt.web.filters.HttpHeaderFilter.doFilter(HttpHeaderFilter.java:56)
at org.eclipse.jetty.ee9.servlet.FilterHolder.doFilter(FilterHolder.java:202)
at 
org.eclipse.jetty.ee9.servlet.ServletHandler$Chain.doFilter(ServletHandler.java:1638)
at io.hawt.web.filters.HttpHeaderFilter.doFilter(HttpHeaderFilter.java:56)
at org.eclipse.jetty.ee9.servlet.FilterHolder.doFilter(FilterHolder.java:202)
at 
org.eclipse.jetty.ee9.servlet.ServletHandler$Chain.doFilter(ServletHandler.java:1638)
at io.hawt.web.filters.HttpHeaderFilter.doFilter(HttpHeaderFilter.java:56)
at org.eclipse.jetty.ee9.servlet.FilterHolder.doFilter(FilterHolder.java:202)
at 
org.eclipse.jetty.ee9.servlet.ServletHandler$Chain.doFilter(ServletHandler.java:1638)
at io.hawt.web.filters.HttpHeaderFilter.doFilter(HttpHeaderFilter.java:56)
at org.eclipse.jetty.ee9.servlet.FilterHolder.doFilter(FilterHolder.java:202)
at 
org.eclipse.jetty.ee9.servlet.ServletHandler$Chain.doFilter(ServletHandler.java:1638)
at io.hawt.web.filters.HttpHeaderFilter.doFilter(HttpHeaderFilter.java:56)
at org.eclipse.jetty.ee9.servlet.FilterHolder.doFilter(FilterHolder.java:202)
at 
org.eclipse.jetty.ee9.servlet.ServletHandler$Chain.doFilter(ServletHandler.java:1638)
at io.hawt.web.filters.HttpHeaderFilter.doFilter(HttpHeaderFilter.java:56)
at org.eclipse.jetty.ee9.servlet.FilterHolder.doFilter(FilterHolder.java:202)
at 
org.eclipse.jetty.ee9.servlet.ServletHandler$Chain.doFilter(ServletHandler.java:1638)
at io.hawt.web.filters.HttpHeaderFilter.doFilter(HttpHeaderFilter.java:56)
at org.eclipse.jetty.ee9.servlet.FilterHolder.doFilter(FilterHolder.java:202)
at 
org.eclipse.jetty.ee9.servlet.ServletHandler$Chain.doFilter(ServletHandler.java:1638)
at io.hawt.web.auth.SessionExpiryFilter.process(SessionExpiryFilter.java:137)
at io.hawt.web.auth.SessionExpiryFilter.doFilter(SessionExpiryFilter.java:60)
at org.eclipse.jetty.ee9.servlet.FilterHolder.doFilter(FilterHolder.java:210)
at 
org.eclipse.jetty.ee9.servlet.ServletHandler$Chain.doFilter(ServletHandler.java:1638)
at 
org.apache.activemq.artemis.component.JolokiaFilter.doFilter(JolokiaFilter.java:50)
at org.eclipse.jetty.ee9.servlet.FilterHolder.doFilter(FilterHolder.java:202)
at 
org.eclipse.jetty.ee9.servlet.ServletHandler$Chain.doFilter(ServletHandler.java:1638)
at 
org.eclipse.jetty.ee9.servlet.ServletHandler.doHandle(ServletHandler.java:526)
at org.eclipse.jetty.ee9.nested.ScopedHandler.handle(ScopedHandler.java:127)
at 
org.eclipse.jetty.ee9.security.SecurityHandler.handle(SecurityHandler.java:603)
at org.eclipse.jetty.ee9.nested.HandlerWrapper.handle(HandlerWrapper.java:124)
at org.eclipse.jetty.ee9.nested.ScopedHandler.nextHandle(ScopedHandler.java:197)
at org.eclipse.jetty.ee9.nested.SessionHandler.doHandle(SessionHandler.java:612)
at org.eclipse.jetty.ee9.nested.ScopedHandler.nextHandle(ScopedHandler.java:195)
at 
org.eclipse.jetty.ee9.nested.ContextHandler.doHandle(ContextHandler.java:1045)
at org.eclipse.jetty.ee9.nested.ScopedHandler.nextScope(ScopedHandler.java:164)
at org.eclipse.jetty.ee9.servlet.ServletHandler.doScope(ServletHandler.java:483)
at org.eclipse.jetty.ee9.nested.ScopedHandler.nextScope(ScopedHandler.java:162)
at org.eclipse.jetty.ee9.nested.SessionHandler.doScope(SessionHandler.java:589)
at org.eclipse.jetty.ee9.nested.ScopedHandler.nextScope(ScopedHandler.java:162)
at org.eclipse.jetty.ee9.nested.ContextHandler.doScope(ContextHandler.java:966)
at org.eclipse.jetty.ee9.nested.ScopedHandler.handle(ScopedHandler.java:125)
at org.eclipse.jetty.ee9.nested.ContextHandler.handle(ContextHandler.java:1719)
at 
org.eclipse.jetty.ee9.nested.HttpChannel$RequestDispatchable.dispatch(HttpChannel.java:1565)
at org.eclipse.jetty.ee9.nested.HttpChannel.dispatch(HttpChannel.java:724)
at org.eclipse.jetty.ee9.nested.HttpChannel.handle(HttpChannel.java:512)
at 
org.eclipse.jetty.ee9.nested.ContextHandler$CoreContextHandler$CoreToNestedHandler.handle(ContextHandler.java:3029)
at 
org.eclipse.jetty.server.handler.ContextHandler.handle(ContextHandler.java:1071)
at org.eclipse.jetty.server.Handler$Sequence.handle(Handler.java:805)
at org.eclipse.jetty.server.Server.handle(Server.java:182)
at 
org.eclipse.jetty.server.internal.HttpChannelState$HandlerInvoker.run(HttpChannelState.java:678)
at 
org.eclipse.jetty.server.internal.HttpConnection.onFillable(HttpConnection.java:416)
at 
org.eclipse.jetty.io.AbstractConnection$ReadCallback.succeeded(AbstractConnection.java:322)
at org.eclipse.jetty.io.FillInterest.fillable(FillInterest.java:99)
at 
org.eclipse.jetty.io.SelectableChannelEndPoint$1.run(SelectableChannelEndPoint.java:53)
at 
org.eclipse.jetty.util.thread.strategy.AdaptiveExecutionStrategy.runTask(AdaptiveExecutionStrategy.java:480)
at 
org.eclipse.jetty.util.thread.strategy.AdaptiveExecutionStrategy.consumeTask(AdaptiveExecutionStrategy.java:443)
at 
org.eclipse.jetty.util.thread.strategy.AdaptiveExecutionStrategy.tryProduce(AdaptiveExecutionStrategy.java:293)
at 
org.eclipse.jetty.util.thread.strategy.AdaptiveExecutionStrategy.run(AdaptiveExecutionStrategy.java:201)
at 
org.eclipse.jetty.util.thread.ReservedThreadExecutor$ReservedThread.run(ReservedThreadExecutor.java:311)
at 
org.eclipse.jetty.util.thread.QueuedThreadPool.runJob(QueuedThreadPool.java:981)
at 
org.eclipse.jetty.util.thread.QueuedThreadPool$Runner.doRunJob(QueuedThreadPool.java:1211)
at 
org.eclipse.jetty.util.thread.QueuedThreadPool$Runner.run(QueuedThreadPool.java:1166)
at java.base/java.lang.Thread.run(Thread.java:1583)

```

 



--
This message was sent by Atlassian Jira
(v8.20.10#820010)

---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]
For further information, visit: https://activemq.apache.org/contact


Reply via email to