[FIX] Error 403 instead of 401 when no role found in token.

This commit is contained in:
Edouard DUPIN 2025-04-18 08:31:17 +02:00
parent 106e64a90c
commit 8c46d9b441

View File

@ -174,7 +174,7 @@ public class AuthenticationFilter implements ContainerRequestFilter {
if (!haveRight) { if (!haveRight) {
LOGGER.error("REJECTED not enought right : {} require: {}", requestContext.getUriInfo().getPath(), roles); LOGGER.error("REJECTED not enought right : {} require: {}", requestContext.getUriInfo().getPath(), roles);
requestContext requestContext
.abortWith(Response.status(Response.Status.UNAUTHORIZED).entity("Not enought RIGHT !!!").build()); .abortWith(Response.status(Response.Status.FORBIDDEN).entity("Not enought RIGHT !!!").build());
return; return;
} }
requestContext.setSecurityContext(userContext); requestContext.setSecurityContext(userContext);