Clone Tools
  • last updated a few minutes ago
Constraints: committers
Constraints: files
Constraints: dates
[WFLY-2211] For domain management we may have http, https or both.

This commit corrects an issue where a NullPointerException was encountered when only https was defined.

  1. … 2 more files in changeset.
[WFLY-2660] Don't attempt to load group information if the remote 'user' was authenticated as a server.

[WFLY-2128] JMS one-port support

* add http-connector and http-acceptor resources to handle connections

from HTTP and upgrade to HornetQ protocol.

* use netty-xnio-transport to wrap the XNIO channel into a Netty channel

to hand it over to HornetQ server.

* component changes:

* add org.jboss.xnio.netty:netty-xnio-transport:0.1.0

    • -0
    • +196
  1. … 30 more files in changeset.
Change properties to lower thread creation

  1. … 11 more files in changeset.
Fix some issues with remote outbound connections

  1. … 2 more files in changeset.
[WFLY-2466] Synchronize on collection when iterating

Undertow 1.0.0.Beta23

  1. … 14 more files in changeset.
Set default option values before setting user provided values so defaults don't override

  1. … 1 more file in changeset.
WFLY-1801 Move remoting to use io subsystem for workers

- fix worker defaults

- preserve backward compatibilty

    • -85
    • +0
    • -80
    • +0
    • -93
    • +0
  1. … 197 more files in changeset.
[WFLY-490] / [WFLY-1852] Ensure the InetAddressPrincipal is added at the time of authentication and not retrospectively added.

  1. … 8 more files in changeset.
[WFLY-2218][WFLY-2242] Cleanup - Use DiscardAttributeValueChecker in Remoting transformer

[WFLY-2218][WFLY-2242] Test remoting 7.2.0 transformation, and some fixes to the subsystem and transformers

    • -0
    • +48
    • -17
    • +0
  1. … 6 more files in changeset.
[WFLY-1592] Specify an additional supported protocol of 'remote' for the Digest MD5 mechanism to allow communication with older clients.

  1. … 1 more file in changeset.
[WFLY-2172] Update mixed domain test configuration to the most recent, and fix issues

  1. … 12 more files in changeset.
[WFLY-567] / [WFLY-490] Update the security realm based services to provide 'ServiceUtil' implementations that can be used to provide service names based on a realm name and also to set dependencies.

Enable the use of the 'ServiceUtil' classes across WildFly.

  1. … 38 more files in changeset.
[WFLY-490] Move the controller module RBAC mgmt API classes into one package

  1. … 144 more files in changeset.
WFLY-1924 Make sure the connection creation options specified by a user for a remote outbound connection are taken into account when a default for the same option exists

[WFLY-490] [WFLY-1936] RBAC Management API version changes

  1. … 12 more files in changeset.
[WFLY-456] Audit Logging - squashed the below commits since master has changed so much

[WFLY-456] Minor OperationContext impl cleanups

[WFLY-456] Bring in John Bailey's audit log classes

[WFLY-456] Add real audit loggers into the model controllers; integrate management handlers

[WFLY-456] Log the full set of information

[WFLY-456] Fix problems from rebase

[WFLY-456] Use SecurityContext when invoking JMX methods via remoting

[WFLY-456] Move core security classes into own module

[WFLY-456] Rework things and make the controller logger work

[WFLY-456] Include the access mechanism in the log, move some more classes to core-security

[WFLY-456] Make audit logger available to JMX

[WFLY-456] Pluggable MBeanServer delegate to audit logger, and loads of exception handling

[WFLY-456] Jmx audit log proxy

[WFLY-456] Separate the configuration for the core controller and jmx audit logs

[WFLY-456] Set the booting flag in the jmx layer

[WFLY-456] Integrate audit logging resource and ops into JMX extension so it can be configured there

[WFLY-456] Correct copyright notices in my new files

[WFLY-456] fix problems from rebase

[WFLY-456] Get rid of the original hashing implementation

[WFLY-456] Add missing originalResultTxControl from rebase

[WFLY-456] Add config for appenders

[WFLY-456] Basic file appender and json formatter. The output needs cleaning up and everything is currently hardcoded

[WFLY-456] Back up the previous log file. Basic syslog appender (awaiting the improved logmanager SyslogHandler)

[WFLY-456] Use the org.wildfly:wildfly-xxx names. Start configuring file appenders

[WFLY-456] Configure model for syslog appender

[WFLY-456] Log audit log records for ParallelBootOperationContext and ReadOnlyContext

[WFLY-456] Make whether to log on boot configurable

[WFLY-456] Be able to add/remove appender references at runtime and update the appenders at runtime

[WFLY-456] Add boot-log to jmx audit-log as well and update xsd's for both core and jmx

[WFLY-456] Make additive changes to appenders take effect right away, and delay changes/removals until the current audit record has been written

[WFLY-456] Add schema support and parsing for managed server path overrides, and clean up the handlers

[WFLY-456] Use 'handler' rather than 'appender'

[WFLY-456] Pass in audit log operations to managed servers on boot

[WFLY-456] Separate handler chains for host and managed server audit logs

[WFLY-456] i18n and get rid of code no longer needed

[WFLY-456] Fix problems from rebase, revisit security after moved WildFlySecurityManager

[WFLY-456] Flesh out the syslog handler, tried with UDP

[WFLY-456] Start testing the handlers and ops

[WFLY-456] Set up proper syslog host and app names

[WFLY-456] More tests

[WFLY-456] Complete renaming appender->handler. Really

[WFLY-456] Nicer separate configuration for JMX

[WFLY-456] Better testing for enabled and log-read-only audit log write attribute handlers

[WFLY-456] Separate handlers for JMX subsystem audit logging, and tests

[WFLY-456] Maintan a failure count per appender

[WFLY-456] Configure the json formatter and reference from the audit log handlers

Expose 'max-length' and 'truncate' for the syslog handler

[WFLY-456] Make audit logging work in admin-only mode

Fix bug not enabling the appender in domain mode

[WFLY-456] Fixes to tls syslog handler having tried it out against rsyslog

[WFLY-456] don't enable log by default

[WFLY-456] Test jmx audit log transformation

[WFLY-456] Test audit logging in testsuite

[WFLY-456] Move new i18n bits into domain-management, rather than using the ones from controller

[WFLY-456] Recycle handler operation, make max-failure-count configurable per handler, expose runtime attributes for handler failure counts

[WFLY-456] Use strings instead of byte[] for the formatters for now. We can revisit the byte[] part if more tamper detecting formatters are used in the future

[WFLY-456] Use platform independent line terminator

[WFLY-456] Changes to work with latest logmanager following a squash

  1. … 208 more files in changeset.
Revert "Revert "Initial HTTP Upgrade support for remoting naming and EJB invocations""

This reverts commit 8fedd0f07ee2bfe8fd526e09daa84e62e0b036ce.

    • -4
    • +6
    • -0
    • +1
  1. … 93 more files in changeset.
Revert "Initial HTTP Upgrade support for remoting naming and EJB invocations"

This reverts commit e44b2ae0f1354eb82766f15b0ae06906b00ae0b4.

    • -6
    • +4
    • -1
    • +0
  1. … 92 more files in changeset.
[WFLY-490] Subsystem-specific sensitivity classifications

  1. … 29 more files in changeset.
[WFLY-490] Define other core SensitivityClassifications; Apply the core sensitive target constraints

  1. … 57 more files in changeset.
Initial HTTP Upgrade support for remoting naming and EJB invocations

    • -4
    • +6
    • -0
    • +190
    • -0
    • +1
    • -0
    • +83
    • -0
    • +57
    • -0
    • +70
  1. … 92 more files in changeset.
Move to the privileged methods on WildFlySecurityManager

  1. … 192 more files in changeset.
Use isChecking() when deciding whether to construct privileged blocks or nontrivial permission checks

  1. … 100 more files in changeset.
[AS7-5439] wait for operations to complete before shutting down the server

  1. … 12 more files in changeset.
Add Wildfly security manager implementation

  1. … 169 more files in changeset.
Initial HTTP upgrade support for management operations

This commit adds support for multiplexing the remoting protocol over

the HTTP management port, removing the need for two seperate management


Port 9999 is now no longer present in the default config, and the

management client will attempt to connect via a HTTP upgrade by


  1. … 130 more files in changeset.
Upgrade few plugins & dependencies

* arquillian

* shrinkwrap

* checkstyle

* + fix problems that resulted as part of upgrades

  1. … 15 more files in changeset.