Re: [VOTE] Release Apache OpenWebBeans-2.0.10

2019-01-11 Thread Reinhard Sandtner
+1

lg
reini

> Am 09.01.2019 um 11:34 schrieb Romain Manni-Bucau :
> 
> Hi guys,
> 
> I'd like to call a vote for OWB 2.0.10. Issues fixed are:
> 
> [image: Major] [image: Bug] OWB-1273
>  Extension wildcard types
> leak parameterized types
>  Romain
> Manni-Bucau
> 
> RESOLVED
> [image: Major] [image: Bug] OWB-1274
>  BeanConfigurator does not
> compute implicitly a passivationid when needed
>  Romain Manni-Bucau
> 
> RESOLVED
> [image: Major] [image: Bug] OWB-1275
>  BeanConfigurator does not
> add properly Any and Default literals when no qualifier was set
>  Romain Manni-Bucau
> 
> RESOLVED
> [image: Major] [image: Bug] OWB-1276
>  BeanConfigurator does not
> define @Default/@Any properly for @Named qualified beans
>  Romain Manni-Bucau
> 
> RESOLVED
> [image: Major] [image: Improvement] OWB-1277
>  We can't proxy a bean with
> a writeReplace  Romain
> Manni-Bucau
> 
> RESOLVED
> [image: Major] [image: Improvement] OWB-1278
>  Default exclusions are not
> geronimo friendly  Romain
> Manni-Bucau
> 
> RESOLVED
> Staging repo:
> https://repository.apache.org/content/repositories/orgapacheopenwebbeans-1050
> Sources:
> https://repository.apache.org/content/repositories/orgapacheopenwebbeans-1050/org/apache/openwebbeans/openwebbeans/2.0.10/
> Dist Dev area: https://dist.apache.org/repos/dist/dev/openwebbeans/owb/
> (rev 31837)
> Tag: *https://svn.apache.org/repos/asf/openwebbeans/tags/openwebbeans-2.0.10/
> *
> (rev 1850843)
> 
> Please VOTE:
> 
> [+1] go for it!
> [-1] No, because there this ${issue} is blocking
> 
> 
> The VOTE is open for 72h as usual.
> 
> 
> Romain Manni-Bucau
> @rmannibucau  |  Blog
>  | Old Blog
>  | Github  |
> LinkedIn  | Book
> 



Re: [VOTE] Apache Meecrowave 1.2.5

2019-01-11 Thread Reinhard Sandtner
+1

lg reini

> Am 09.01.2019 um 12:26 schrieb Romain Manni-Bucau :
> 
> Hi guys,
> 
> Here is the vote for Meecrowave 1.2.5.
> 
> We fixed 21 issues:
> 
> PTKeySummaryAssigneeStatusDevelopment
> [image: Critical] [image: Bug] MEECROWAVE-91
>  RequestScoped context
> not active for @Observes @Initialized(ApplicationScoped.class)
>  Unassigned RESOLVED
> [image: Major] [image: Improvement] MEECROWAVE-151
>  Exclude jacoco agent
> from default scanning
>  Romain
> Manni-Bucau
> 
> RESOLVED
> [image: Major] [image: Improvement] MEECROWAVE-152
>  eclude osgi
> versioning from default scanning
>  Romain Manni-Bucau
> 
> RESOLVED
> [image: Major] [image: Improvement] MEECROWAVE-153
>  Upgrade XBean to 4.11
>  Romain Manni-Bucau
> 
> RESOLVED
> [image: Major] [image: Improvement] MEECROWAVE-154
>  Upgrade OpenWebBeans
> 2.0.10  Mark Struberg
> 
> RESOLVED
> [image: Major] [image: Task] MEECROWAVE-157
>  CXF 3.2.7 upgrade
>  Romain Manni-Bucau
> 
> RESOLVED
> [image: Major] [image: Task] MEECROWAVE-158
>  Upgrade to xbean 4.12
>  Romain Manni-Bucau
> 
> RESOLVED
> [image: Major] [image: Task] MEECROWAVE-160
>  Tomcat 9.0.14 upgrade
>  Romain Manni-Bucau
> 
> RESOLVED
> [image: Major] [image: Bug] MEECROWAVE-161
>  Make Meecrowave
> build with Java11  Mark
> Struberg
> 
> RESOLVED
> [image: Major] [image: Improvement] MEECROWAVE-162
>  Support to run
> without cxf and johnzon
>  Romain Manni-Bucau
> 
> RESOLVED
> [image: Major] [image: Improvement] MEECROWAVE-163
>  Makes it easier to
> drop log4j2  Romain
> Manni-Bucau
> 
> RESOLVED
> [image: Major] [image: Improvement] MEECROWAVE-164
>  Drop
> org.apache.catalina package from our codebase
>  Romain Manni-Bucau
> 
> RESOLVED
> [image: Major] [image: Bug] MEECROWAVE-165
>  Interface based
> JAX-RS services not supported
>  Romain Manni-Bucau
> 
> RESOLVED
> [image: Major] [image: Bug] MEECROWAVE-167
>  meecrowave-spec-api
> jar leaks the geronimo spec dependencies
>  Mark Struberg
> 
> RESOLVED
> [image: Major] [image: Improvement] MEECROWAVE-168
>  Upgrade to OWB 2.0.9
> release  Romain
> Manni-Bucau
> 
> RESOLVED
> [image: Major] [image: Improvement] MEECROWAVE-169
>  [not deterministic
> issue protection] Ensure openwebbeans-se does not break meecrowave

Re: [VOTE] Release Apache OpenWebBeans-2.0.10

2019-01-11 Thread Thomas Andraschko
+1

Am Fr., 11. Jan. 2019 um 09:37 Uhr schrieb Reinhard Sandtner <
reinhard.sandt...@gmail.com>:

> +1
>
> lg
> reini
>
> > Am 09.01.2019 um 11:34 schrieb Romain Manni-Bucau  >:
> >
> > Hi guys,
> >
> > I'd like to call a vote for OWB 2.0.10. Issues fixed are:
> >
> > [image: Major] [image: Bug] OWB-1273
> >  Extension wildcard
> types
> > leak parameterized types
> >  Romain
> > Manni-Bucau
> > <
> https://issues.apache.org/jira/secure/ViewProfile.jspa?name=romain.manni-bucau
> >
> > RESOLVED
> > [image: Major] [image: Bug] OWB-1274
> >  BeanConfigurator does
> not
> > compute implicitly a passivationid when needed
> >  Romain Manni-Bucau
> > <
> https://issues.apache.org/jira/secure/ViewProfile.jspa?name=romain.manni-bucau
> >
> > RESOLVED
> > [image: Major] [image: Bug] OWB-1275
> >  BeanConfigurator does
> not
> > add properly Any and Default literals when no qualifier was set
> >  Romain Manni-Bucau
> > <
> https://issues.apache.org/jira/secure/ViewProfile.jspa?name=romain.manni-bucau
> >
> > RESOLVED
> > [image: Major] [image: Bug] OWB-1276
> >  BeanConfigurator does
> not
> > define @Default/@Any properly for @Named qualified beans
> >  Romain Manni-Bucau
> > <
> https://issues.apache.org/jira/secure/ViewProfile.jspa?name=romain.manni-bucau
> >
> > RESOLVED
> > [image: Major] [image: Improvement] OWB-1277
> >  We can't proxy a bean
> with
> > a writeReplace  Romain
> > Manni-Bucau
> > <
> https://issues.apache.org/jira/secure/ViewProfile.jspa?name=romain.manni-bucau
> >
> > RESOLVED
> > [image: Major] [image: Improvement] OWB-1278
> >  Default exclusions are
> not
> > geronimo friendly 
> Romain
> > Manni-Bucau
> > <
> https://issues.apache.org/jira/secure/ViewProfile.jspa?name=romain.manni-bucau
> >
> > RESOLVED
> > Staging repo:
> >
> https://repository.apache.org/content/repositories/orgapacheopenwebbeans-1050
> > Sources:
> >
> https://repository.apache.org/content/repositories/orgapacheopenwebbeans-1050/org/apache/openwebbeans/openwebbeans/2.0.10/
> > Dist Dev area: https://dist.apache.org/repos/dist/dev/openwebbeans/owb/
> > (rev 31837)
> > Tag: *
> https://svn.apache.org/repos/asf/openwebbeans/tags/openwebbeans-2.0.10/
> >  >*
> > (rev 1850843)
> >
> > Please VOTE:
> >
> > [+1] go for it!
> > [-1] No, because there this ${issue} is blocking
> >
> >
> > The VOTE is open for 72h as usual.
> >
> >
> > Romain Manni-Bucau
> > @rmannibucau  |  Blog
> >  | Old Blog
> >  | Github <
> https://github.com/rmannibucau> |
> > LinkedIn  | Book
> > <
> https://www.packtpub.com/application-development/java-ee-8-high-performance
> >
>
>


Re: [VOTE] Release Apache OpenWebBeans-2.0.10

2019-01-11 Thread Mark Struberg
+1 LieGrue,
strub

> Am 09.01.2019 um 11:34 schrieb Romain Manni-Bucau :
> 
> Hi guys,
> 
> I'd like to call a vote for OWB 2.0.10. Issues fixed are:
> 
> [image: Major] [image: Bug] OWB-1273
>  Extension wildcard types
> leak parameterized types
>  Romain
> Manni-Bucau
> 
> RESOLVED
> [image: Major] [image: Bug] OWB-1274
>  BeanConfigurator does not
> compute implicitly a passivationid when needed
>  Romain Manni-Bucau
> 
> RESOLVED
> [image: Major] [image: Bug] OWB-1275
>  BeanConfigurator does not
> add properly Any and Default literals when no qualifier was set
>  Romain Manni-Bucau
> 
> RESOLVED
> [image: Major] [image: Bug] OWB-1276
>  BeanConfigurator does not
> define @Default/@Any properly for @Named qualified beans
>  Romain Manni-Bucau
> 
> RESOLVED
> [image: Major] [image: Improvement] OWB-1277
>  We can't proxy a bean with
> a writeReplace  Romain
> Manni-Bucau
> 
> RESOLVED
> [image: Major] [image: Improvement] OWB-1278
>  Default exclusions are not
> geronimo friendly  Romain
> Manni-Bucau
> 
> RESOLVED
> Staging repo:
> https://repository.apache.org/content/repositories/orgapacheopenwebbeans-1050
> Sources:
> https://repository.apache.org/content/repositories/orgapacheopenwebbeans-1050/org/apache/openwebbeans/openwebbeans/2.0.10/
> Dist Dev area: https://dist.apache.org/repos/dist/dev/openwebbeans/owb/
> (rev 31837)
> Tag: *https://svn.apache.org/repos/asf/openwebbeans/tags/openwebbeans-2.0.10/
> *
> (rev 1850843)
> 
> Please VOTE:
> 
> [+1] go for it!
> [-1] No, because there this ${issue} is blocking
> 
> 
> The VOTE is open for 72h as usual.
> 
> 
> Romain Manni-Bucau
> @rmannibucau  |  Blog
>  | Old Blog
>  | Github  |
> LinkedIn  | Book
> 



Re: [VOTE] Apache Meecrowave 1.2.5

2019-01-11 Thread Mark Struberg
+1

LieGrue,
strub

> Am 11.01.2019 um 09:36 schrieb Reinhard Sandtner 
> :
> 
> +1
> 
> lg reini
> 
>> Am 09.01.2019 um 12:26 schrieb Romain Manni-Bucau :
>> 
>> Hi guys,
>> 
>> Here is the vote for Meecrowave 1.2.5.
>> 
>> We fixed 21 issues:
>> 
>> PTKeySummaryAssigneeStatusDevelopment
>> [image: Critical] [image: Bug] MEECROWAVE-91
>>  RequestScoped context
>> not active for @Observes @Initialized(ApplicationScoped.class)
>>  Unassigned RESOLVED
>> [image: Major] [image: Improvement] MEECROWAVE-151
>>  Exclude jacoco agent
>> from default scanning
>>  Romain
>> Manni-Bucau
>> 
>> RESOLVED
>> [image: Major] [image: Improvement] MEECROWAVE-152
>>  eclude osgi
>> versioning from default scanning
>>  Romain Manni-Bucau
>> 
>> RESOLVED
>> [image: Major] [image: Improvement] MEECROWAVE-153
>>  Upgrade XBean to 4.11
>>  Romain Manni-Bucau
>> 
>> RESOLVED
>> [image: Major] [image: Improvement] MEECROWAVE-154
>>  Upgrade OpenWebBeans
>> 2.0.10  Mark Struberg
>> 
>> RESOLVED
>> [image: Major] [image: Task] MEECROWAVE-157
>>  CXF 3.2.7 upgrade
>>  Romain Manni-Bucau
>> 
>> RESOLVED
>> [image: Major] [image: Task] MEECROWAVE-158
>>  Upgrade to xbean 4.12
>>  Romain Manni-Bucau
>> 
>> RESOLVED
>> [image: Major] [image: Task] MEECROWAVE-160
>>  Tomcat 9.0.14 upgrade
>>  Romain Manni-Bucau
>> 
>> RESOLVED
>> [image: Major] [image: Bug] MEECROWAVE-161
>>  Make Meecrowave
>> build with Java11  Mark
>> Struberg
>> 
>> RESOLVED
>> [image: Major] [image: Improvement] MEECROWAVE-162
>>  Support to run
>> without cxf and johnzon
>>  Romain Manni-Bucau
>> 
>> RESOLVED
>> [image: Major] [image: Improvement] MEECROWAVE-163
>>  Makes it easier to
>> drop log4j2  Romain
>> Manni-Bucau
>> 
>> RESOLVED
>> [image: Major] [image: Improvement] MEECROWAVE-164
>>  Drop
>> org.apache.catalina package from our codebase
>>  Romain Manni-Bucau
>> 
>> RESOLVED
>> [image: Major] [image: Bug] MEECROWAVE-165
>>  Interface based
>> JAX-RS services not supported
>>  Romain Manni-Bucau
>> 
>> RESOLVED
>> [image: Major] [image: Bug] MEECROWAVE-167
>>  meecrowave-spec-api
>> jar leaks the geronimo spec dependencies
>>  Mark Struberg
>> 
>> RESOLVED
>> [image: Major] [image: Improvement] MEECROWAVE-168
>>  Upgrade to OWB 2.0.9
>> release  Romain
>> Manni-Bucau
>> 
>> RESOLVED
>> [image: Major] 

[jira] [Created] (MEECROWAVE-174) OAuth2TokenService does not work with JWT access token format

2019-01-11 Thread Julio Vilmar Gesser (JIRA)
Julio Vilmar Gesser created MEECROWAVE-174:
--

 Summary: OAuth2TokenService does not work with JWT access token 
format
 Key: MEECROWAVE-174
 URL: https://issues.apache.org/jira/browse/MEECROWAVE-174
 Project: Meecrowave
  Issue Type: Bug
Affects Versions: 1.2.4
Reporter: Julio Vilmar Gesser


When the JWT format for access tokens is enabled 
(_oauth2-use-jwt-format-for-access-token_) the *"rs.security.*"* properties are 
not forwarded to the message context.

This results in an error when the *oalth2/token* is invoked (see stacktrace 
below).

OAuth2Configurer class is responsible for forwarding these properties, but it 
only do that when the accept method is called from RedirectionBasedGrantService.
In my case it is being called from AccessTokenService.

 

*Stacktrace:*

org.apache.cxf.rs.security.jose.common.JoseException: No keystore file has been 
configured
 at 
org.apache.cxf.rs.security.jose.common.KeyManagementUtils.loadPersistKeyStore(KeyManagementUtils.java:285)
 ~[cxf-rt-rs-security-jose-3.2.6.jar:3.2.6]
 at 
org.apache.cxf.rs.security.jose.common.KeyManagementUtils.loadPrivateKey(KeyManagementUtils.java:273)
 ~[cxf-rt-rs-security-jose-3.2.6.jar:3.2.6]
 at 
org.apache.cxf.rs.security.jose.jws.JwsUtils.loadSignatureProvider(JwsUtils.java:334)
 ~[cxf-rt-rs-security-jose-3.2.6.jar:3.2.6]
 at 
org.apache.cxf.rs.security.jose.jws.JwsUtils.loadSignatureProvider(JwsUtils.java:278)
 ~[cxf-rt-rs-security-jose-3.2.6.jar:3.2.6]
 at 
org.apache.cxf.rs.security.jose.jws.JwsUtils.loadSignatureProvider(JwsUtils.java:227)
 ~[cxf-rt-rs-security-jose-3.2.6.jar:3.2.6]
 at 
org.apache.cxf.rs.security.jose.common.AbstractJoseProducer.getInitializedSignatureProvider(AbstractJoseProducer.java:39)
 ~[cxf-rt-rs-security-jose-3.2.6.jar:3.2.6]
 at 
org.apache.cxf.rs.security.jose.jwt.JoseJwtProducer.processJwt(JoseJwtProducer.java:53)
 ~[cxf-rt-rs-security-jose-3.2.6.jar:3.2.6]
 at 
org.apache.cxf.rs.security.jose.jwt.JoseJwtProducer.processJwt(JoseJwtProducer.java:31)
 ~[cxf-rt-rs-security-jose-3.2.6.jar:3.2.6]
 at 
org.apache.cxf.rs.security.oauth2.provider.AbstractOAuthDataProvider.processJwtAccessToken(AbstractOAuthDataProvider.java:635)
 ~[cxf-rt-rs-security-oauth2-3.2.6.jar:3.2.6]
 at 
org.apache.cxf.rs.security.oauth2.provider.AbstractOAuthDataProvider.doCreateAccessToken(AbstractOAuthDataProvider.java:102)
 ~[cxf-rt-rs-security-oauth2-3.2.6.jar:3.2.6]
 at 
org.apache.cxf.rs.security.oauth2.provider.AbstractOAuthDataProvider.createAccessToken(AbstractOAuthDataProvider.java:69)
 ~[cxf-rt-rs-security-oauth2-3.2.6.jar:3.2.6]
 at 
org.apache.meecrowave.oauth2.data.RefreshTokenEnabledProvider.createAccessToken(RefreshTokenEnabledProvider.java:68)
 ~[meecrowave-oauth2-1.2.4.jar:1.2.4]
 at 
org.apache.cxf.rs.security.oauth2.grants.AbstractGrantHandler.doCreateAccessToken(AbstractGrantHandler.java:135)
 ~[cxf-rt-rs-security-oauth2-3.2.6.jar:3.2.6]
 at 
org.apache.cxf.rs.security.oauth2.grants.AbstractGrantHandler.doCreateAccessToken(AbstractGrantHandler.java:105)
 ~[cxf-rt-rs-security-oauth2-3.2.6.jar:3.2.6]
 at 
org.apache.cxf.rs.security.oauth2.grants.AbstractGrantHandler.doCreateAccessToken(AbstractGrantHandler.java:87)
 ~[cxf-rt-rs-security-oauth2-3.2.6.jar:3.2.6]
 at 
org.apache.cxf.rs.security.oauth2.grants.owner.ResourceOwnerGrantHandler.createAccessToken(ResourceOwnerGrantHandler.java:56)
 ~[cxf-rt-rs-security-oauth2-3.2.6.jar:3.2.6]
 at 
org.apache.cxf.rs.security.oauth2.services.AccessTokenService.handleTokenRequest(AccessTokenService.java:124)
 [cxf-rt-rs-security-oauth2-3.2.6.jar:3.2.6]
 at 
org.apache.meecrowave.oauth2.resource.OAuth2TokenService$LazyImpl$$OwbNormalScopeProxy0.handleTokenRequest(org/apache/meecrowave/oauth2/resource/OAuth2TokenService$LazyImpl.java)
 [?:1.2.4]
 at 
org.apache.meecrowave.oauth2.resource.OAuth2TokenService.handleTokenRequest(OAuth2TokenService.java:54)
 [meecrowave-oauth2-1.2.4.jar:1.2.4]
 at sun.reflect.NativeMethodAccessorImpl.invoke0(Native Method) ~[?:1.8.0_181]
 at 
sun.reflect.NativeMethodAccessorImpl.invoke(NativeMethodAccessorImpl.java:62) 
~[?:1.8.0_181]
 at 
sun.reflect.DelegatingMethodAccessorImpl.invoke(DelegatingMethodAccessorImpl.java:43)
 ~[?:1.8.0_181]
 at java.lang.reflect.Method.invoke(Method.java:498) ~[?:1.8.0_181]
 at 
org.apache.webbeans.intercept.AbstractInvocationContext.directProceed(AbstractInvocationContext.java:113)
 [openwebbeans-impl-2.0.7.jar:2.0.7]
 at 
org.apache.webbeans.intercept.AbstractInvocationContext.proceed(AbstractInvocationContext.java:106)
 [openwebbeans-impl-2.0.7.jar:2.0.7]
 at 
org.apache.webbeans.intercept.InterceptorInvocationContext.proceed(InterceptorInvocationContext.java:78)
 [openwebbeans-impl-2.0.7.jar:2.0.7]
 at 
org.apache.meecrowave.cxf.JAXRSFieldInjectionInterceptor.lazyInjectContexts(JAXRSFieldInjectionInterceptor.java:64)
 [meecrowave-core-1.2.4.jar:1.2.4]
 at sun.reflect.NativeMethodAccessorIm