do not add _anonymous to group _authenticated / use AnonymousToken for anonymous access in authenticationFilter

This commit is contained in:
Eduard Heimbuch
2019-10-09 16:41:55 +02:00
parent 8556278533
commit 344ad696b2
4 changed files with 60 additions and 10 deletions

View File

@@ -38,7 +38,10 @@ public class DefaultGroupCollector implements GroupCollector {
public Set<String> collect(String principal) {
ImmutableSet.Builder<String> builder = ImmutableSet.builder();
builder.add(AUTHENTICATED);
if (principal != "_anonymous") {
builder.add(AUTHENTICATED);
}
builder.addAll(resolveExternalGroups(principal));
appendInternalGroups(principal, builder);