mirror of
https://github.com/Graylog2/graylog2-server.git
synced 2026-03-13 09:32:21 +08:00
RootAccountRealm is the first realm to touch when checking permissions
This commit is contained in:
@@ -62,9 +62,9 @@ public class DefaultSecurityManagerProvider implements Provider<DefaultSecurityM
|
||||
}
|
||||
|
||||
List<Realm> authorizingRealms = new ArrayList<>();
|
||||
authorizingRealms.addAll(authorizingOnlyRealms.values());
|
||||
// root account realm might be deactivated and won't be present in that case
|
||||
orderedAuthenticatingRealms.getRootAccountRealm().ifPresent(authorizingRealms::add);
|
||||
authorizingRealms.addAll(authorizingOnlyRealms.values());
|
||||
|
||||
final ModularRealmAuthorizer authorizer = new ModularRealmAuthorizer(authorizingRealms);
|
||||
|
||||
|
||||
Reference in New Issue
Block a user