Commit e1bc37a
committed
Make role-hierarchy cycle logging crash-proof (fixes #37)
logRoleHierarchyCycle re-walks the role hierarchy to build a readable
log message when the same role is reached twice while resolving a
closure (which happens for a shared-ancestor diamond, not only a true
cycle). That walk dereferenced roleDefinitionsMap.get(current)
unguarded, so a role id with no entry in the map - a dangling parent
reference - threw a NullPointerException that propagated out of
getProjectRoleClosure and, from there, out of every capability check
for whoever triggered it.
Confirmed live: sharing a project at EDIT (role CanEdit, whose closure
passes through ProjectViewer/IssueViewer) crashed every subsequent
capability check for that collaborator, and the caller's swallow-to-
empty-set on RPC failure turned that into a silent "Forbidden" for a
successfully granted user.
The reconstruction is diagnostic-only, so it now stops (still logging
what it has) the moment it can't find a next role to walk to, instead
of crashing.1 parent 4af0ca8 commit e1bc37a
2 files changed
Lines changed: 89 additions & 2 deletions
File tree
- src
- main/java/edu/stanford/protege/webprotege/authorization
- test/java/edu/stanford/protege/webprotege/authorization
Lines changed: 15 additions & 2 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
153 | 153 | | |
154 | 154 | | |
155 | 155 | | |
156 | | - | |
157 | | - | |
| 156 | + | |
| 157 | + | |
| 158 | + | |
| 159 | + | |
| 160 | + | |
| 161 | + | |
| 162 | + | |
| 163 | + | |
| 164 | + | |
| 165 | + | |
| 166 | + | |
| 167 | + | |
| 168 | + | |
| 169 | + | |
| 170 | + | |
158 | 171 | | |
159 | 172 | | |
160 | 173 | | |
| |||
Lines changed: 74 additions & 0 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
| 1 | + | |
| 2 | + | |
| 3 | + | |
| 4 | + | |
| 5 | + | |
| 6 | + | |
| 7 | + | |
| 8 | + | |
| 9 | + | |
| 10 | + | |
| 11 | + | |
| 12 | + | |
| 13 | + | |
| 14 | + | |
| 15 | + | |
| 16 | + | |
| 17 | + | |
| 18 | + | |
| 19 | + | |
| 20 | + | |
| 21 | + | |
| 22 | + | |
| 23 | + | |
| 24 | + | |
| 25 | + | |
| 26 | + | |
| 27 | + | |
| 28 | + | |
| 29 | + | |
| 30 | + | |
| 31 | + | |
| 32 | + | |
| 33 | + | |
| 34 | + | |
| 35 | + | |
| 36 | + | |
| 37 | + | |
| 38 | + | |
| 39 | + | |
| 40 | + | |
| 41 | + | |
| 42 | + | |
| 43 | + | |
| 44 | + | |
| 45 | + | |
| 46 | + | |
| 47 | + | |
| 48 | + | |
| 49 | + | |
| 50 | + | |
| 51 | + | |
| 52 | + | |
| 53 | + | |
| 54 | + | |
| 55 | + | |
| 56 | + | |
| 57 | + | |
| 58 | + | |
| 59 | + | |
| 60 | + | |
| 61 | + | |
| 62 | + | |
| 63 | + | |
| 64 | + | |
| 65 | + | |
| 66 | + | |
| 67 | + | |
| 68 | + | |
| 69 | + | |
| 70 | + | |
| 71 | + | |
| 72 | + | |
| 73 | + | |
| 74 | + | |
0 commit comments