[ 
https://issues.apache.org/jira/browse/HIVE-25957?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
 ]

ASF GitHub Bot updated HIVE-25957:
----------------------------------
    Labels: pull-request-available  (was: )

> Fix password based authentication with SAML enabled
> ---------------------------------------------------
>
>                 Key: HIVE-25957
>                 URL: https://issues.apache.org/jira/browse/HIVE-25957
>             Project: Hive
>          Issue Type: Bug
>          Components: HiveServer2
>    Affects Versions: 4.0.0
>            Reporter: Yu-Wen Lai
>            Assignee: Yu-Wen Lai
>            Priority: Major
>              Labels: pull-request-available
>          Time Spent: 10m
>  Remaining Estimate: 0h
>
> In HIVE-25875, we allowed SAML to be set with other password based 
> authentication, but we pass NONE to the function doPasswordAuth. That is, any 
> requests use basic authentication header can bypass the password verification 
> because NONE means a no-op authentication.



--
This message was sent by Atlassian Jira
(v8.20.1#820001)

Reply via email to