소스 검색

sendError now returns less informative forbidden message rather than the exception message.

Luke Taylor 20 년 전
부모
커밋
ae47fb722d
1개의 변경된 파일1개의 추가작업 그리고 1개의 파일을 삭제
  1. 1 1
      core/src/main/java/org/acegisecurity/ui/x509/X509ProcessingFilterEntryPoint.java

+ 1 - 1
core/src/main/java/org/acegisecurity/ui/x509/X509ProcessingFilterEntryPoint.java

@@ -57,6 +57,6 @@ public class X509ProcessingFilterEntryPoint implements AuthenticationEntryPoint
     public void commence(ServletRequest request, ServletResponse response, AuthenticationException authException) throws IOException, ServletException {
         logger.debug("X509 entry point called. Rejecting access");
         HttpServletResponse httpResponse = (HttpServletResponse)response;
-        httpResponse.sendError(HttpServletResponse.SC_FORBIDDEN, authException.getMessage());
+        httpResponse.sendError(HttpServletResponse.SC_FORBIDDEN, "Access Denied");
     }
 }