Uploaded image for project: 'Artifactory Binary Repository'
  1. Artifactory Binary Repository
  2. RTFACT-15471

Unauthorized Docker Remote Call Returns 404 instead of 401 or 403

    Details

    • Type: Bug
    • Status: Resolved
    • Priority: Normal
    • Resolution: Fixed
    • Affects Version/s: None
    • Fix Version/s: 6.12.0
    • Component/s: Docker
    • Labels:
    • Sprint:
      Pam - Sprint 1

      Description

      Artifactory 5.5.2

      Set-up:
      Allow Anonymous Access
      Have anonymous use reader group
      Create Docker remote (hub.docker.com) is fine
      use a docker command to try and pull from the remote

      User is not authorized to deploy/cache the remote, however, the request returns a 404 instead of a 401.

      Example failed request:

      20171212171026|17|REQUEST|127.0.0.1|unauthorized_user|GET|/api/docker/docker-hub/v2/|HTTP/1.1|200|0
      20171212171026|2|REQUEST|127.0.0.1|unauthorized_user|GET|/api/docker/docker-hub/v2/blackducksoftware/hub-nginx/manifests/4.2.0|HTTP/1.1|404|0
      

      example working:

      20171212172712|2|REQUEST|127.0.0.1|authorized_user|GET|/api/docker/docker-hub/v2/|HTTP/1.1|200|0
      20171212172713|1254|REQUEST|127.0.0.1|authorized_user|GET|/api/docker/docker-hub/v2/blackducksoftware/hub-nginx/manifests/4.2.0|HTTP/1.1|200|2612
      

        Attachments

          Activity

            People

            • Assignee:
              rotemk Rotem Kfir
              Reporter:
              jchittum John Chittum
            • Votes:
              4 Vote for this issue
              Watchers:
              8 Start watching this issue

              Dates

              • Created:
                Updated:
                Resolved: