Freeman Fang created CXF-7582:
---------------------------------

             Summary: the karaf.secured.command.compulsory.roles should only 
affect command ACL rules
                 Key: CXF-7582
                 URL: https://issues.apache.org/jira/browse/CXF-7582
             Project: CXF
          Issue Type: Bug
            Reporter: Freeman Fang


for the JMX ACL rules, it's hierarchical and hence we can simply add

*=admin

to the root jmx.acl.cfg to enforce all mbean operations without more specific 
match to be admin role.

Currently enable karaf.secured.command.compulsory.roles also take effect for 
the JMX ACL rules which prevent the upper hierarchy rules take effect



--
This message was sent by Atlassian JIRA
(v6.4.14#64029)

Reply via email to