Uploaded image for project: 'OpenAM Agents'
  1. OpenAM Agents
  2. AMAGENTS-4204

JASPA: Fragments feature does not work with transaction policy

    XMLWordPrintable

    Details

    • Type: Bug
    • Status: Closed
    • Priority: Major
    • Resolution: Fixed
    • Affects Version/s: 5.8.0
    • Fix Version/s: 5.8.1, 5.9.0
    • Component/s: Java Agents
    • Environment:
      Version: 5.8.0
      Build Date: 2021-02-09 14:14:06
      Build Revision: 9eaec447f0e845e4d40f2e8d4088e25eefca9c86

      Description

      JASPA: Fragments feature does not work with transaction policy.

       

      Steps to reproduce

      1.) Enable fragments in java Agent profile: Fragment Relay URI = /agentapp/fragment-dummy

      2.) Create a transaction policy

      Resource: *://jpa.pentest.forgeops.com:*/web/transaction/*
      Action: GET
      Subjects: All Auth. Users
      Environments: Type = Transaction / Auth. Strategy = Authentication To Chain / Strategy Specifier = <Chain Name> (ldapService or create a new chain and provide name) 
      

      3.) Access to resource and, login to get the token e.g: /web/index.html
      4.) Access to the transaction resource e.g: /web/transaction/trans.html

      Expected

      Ask for authentication and after that see the transaction page, next request ask for auth. again

      Observed

      Redirection loop

      Debug log is attached

        Attachments

          Issue Links

            Activity

              People

              Assignee:
              tony.bamford Tony Bamford
              Reporter:
              richard.hruza Richard Hruza
              Votes:
              0 Vote for this issue
              Watchers:
              3 Start watching this issue

                Dates

                Created:
                Updated:
                Resolved: