Re: AMQ224006: Invalid filter: hyphenated_props:federation-name IS NOT NULL

2021-01-27 Thread Domenico Francesco Bruscino
Hi Erwin, you can get the exception details of the `AMQ224006` error setting the log level to debug for org.apache.activemq.artemis.core.server.ActiveMQServerLogger [1]. [1] https://activemq.apache.org/components/artemis/documentation/latest/logging.html Regards, Domenico Il giorno mar 26 gen

Re: Server-side redelivery no longer working with 5.16.0/5.16.1

2021-01-27 Thread Jean-Baptiste Onofre
Hi Martin, Do you have some exception ? Let me try it on 5.16.1 (I didn’t see any issue but I might have missed it). Regards JB > Le 27 janv. 2021 à 18:41, Martin Lichtin a écrit : > > Hi, has anything changed regarding server-side redelivery using the > ? > > Going from 5.15.14 to 5.16.1,

Server-side redelivery no longer working with 5.16.0/5.16.1

2021-01-27 Thread Martin Lichtin
Hi, has anything changed regarding server-side redelivery using the ? Going from 5.15.14 to 5.16.1, it seems to no longer work as expected. I see AMQ-7298 which may contribute to a change in this area. - Martin

CVE-2021-26117: ActiveMQ: LDAP-Authentication does not verify passwords on servers with anonymous bind

2021-01-27 Thread Gary Tully
Description: The optional ActiveMQ LDAP login module can be configured to use anonymous access to the LDAP server. In this case, for Apache ActiveMQ Artemis prior to version 2.16.0 and Apache ActiveMQ prior to versions 5.16.1 and 5.15.14, the anonymous context is used to verify a valid users

CVE-2021-26118: Flaw in ActiveMQ Artemis OpenWire support

2021-01-27 Thread Gary Tully
Description: While investigating ARTEMIS-2964 it was found that the creation of advisory messages in the OpenWire protocol head of Apache ActiveMQ Artemis 2.15.0 bypassed policy based access control for the entire session. Production of advisory messages was not subject to access control in

Re: Artemis: LDAP-Authentication does not verify passwords on servers with anonymous bind

2021-01-27 Thread Gregor Tudan
Hi Gary, Thanks for the offer! I take the credits as suggested. Kind Regards, Gregor On 27 Jan 2021, at 10:45, Gary Tully wrote: HI Gregor, I am going to file a CVE for this issue. CVE-2021-26117 would you like a credit? Credit: This issue was discovered by: * Gregor Tudan - see

RE: EXT: Re: Content of JMX property FirstTimestamp?

2021-01-27 Thread Pachod, Joseph (GE Healthcare)
I'm afraid this is something far from my capacity :$ Can I help somehow? -Original Message- From: Justin Bertram Sent: Thursday, January 21, 2021 5:46 PM To: users@activemq.apache.org Subject: Re: EXT: Re: Content of JMX property FirstTimestamp? I think relative links make the most