Undertow with proactive-authentication=false still attempts authentication and gives 401 response for unsecured pages with Elytron EAP 7.1
Issue
- Undertow attempt authentication for unsecured pages when request header has Authorization: Basic "anystring".
Environment
- Red Hat JBoss Enterprise Application 7.1
- proactive-authentication=false in Undertow
- Elytron for authentication/authorization
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.