Migrating from AS7 to Wildfly10, Could not login, page spins and nothing happens

0 投票
最新提问 用户: (180 分)

We have our application running in AS7 and in standalone.xml, we have a login method defined as following

<subsystem xmlns="urn:jboss:domain:security:1.1">
  <security-domain name="form-auth" cache-type="default">
  <login-module code="com.myorg.security.auth.login.MyOrgLoginModule" flag="required"/>
  <security-domain name="other" cache-type="default">
  <login-module code="com.myorg.security.auth.login.MyOrgLoginModule" flag="required"/>
<subsystem xmlns="urn:jboss:domain:threads:1.1"/>
<subsystem xmlns="urn:jboss:domain:transactions:1.1">
  <recovery-environment socket-binding="txn-recovery-environment" status-socket-binding="txn-status-manager"/>
  <coordinator-environment default-timeout="18000"/>

With this we are able to get the form page and when we provide user/password, it authenticates and let users see the data.

Now, we are migrating this application on Wildfly10 and when we start the server, the main page comes up, but then we hit Login button with username/password, the browser status says "Waiting for " and nothing happens, there are no log entires either. Additionally, I tried to hit other endpoints (which are protected), and I see redirect to login page

curl -s -D - http://localhost:8080/myorg/archiveLogs -o /dev/null
HTTP/1.1 302 Found
Cache-control: private
X-Powered-By: Undertow/1
Server: WildFly/10
X-XSS-Protection: 1; mode=block
X-Frame-Options: sameorigin
Location: http://localhost:8080/myorg/myorglogin?t=1
Date: Fri, 19 May 2017 19:37:58 GMT
Connection: keep-alive
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
Content-Type: text/html
Content-Length: 0
Content-Language: en-US

Which means other endpoints are serving as well and responding too, but login page never comes back when the form is submitted.

I have spent 2 days on this and not sure how to fix or further debug this either.

Any help is greatly appreciated. Thanks a lot

登录 或者 注册 后回答这个问题。

欢迎来到 Security Q&A ,有什么不懂的可以尽管在这里提问,你将会收到社区其他成员的回答。