If a user is not authenticated, JSON response "You must be logged in to access this page" with status code 200 is returned. 401 status code should be returned.
patch is on the list: https://fedorahosted.org/pipermail/aeolus-devel/2012-January/008078.html
pushed, commit 1310ebaa5e496900e371d26d6c670ae624750d6a
aeolus-conductor-0.8.0-8.el6.src.rpm 942cd20b2105d6d69c606941ba6a91f86b18e9fc
rails.log ========================================= Processing by UserSessionsController#unauthenticated as JS Parameters: {"_password"=>"[FILTERED]", "authenticity_token"=>"U9N/rCgpu8ou8Ct2/BzIeJ05Y/c7hsPJeeZC6PsbSeA=", "utf8"=>"✓", "password"=>"[FILTERED]", "login"=>"admin"} Request is unauthenticated for 127.0.0.1 Rendered text template (0.0ms) Completed 401 Unauthorized in 2ms (Views: 0.5ms | ActiveRecord: 10.3ms) ============================================== status 401 is returned. verified in rpm -qa|grep aeolus aeolus-conductor-0.8.0-8.el6.noarch aeolus-configure-2.5.0-5.el6.noarch aeolus-conductor-daemons-0.8.0-8.el6.noarch rubygem-aeolus-image-0.3.0-3.el6.noarch rubygem-aeolus-cli-0.3.0-4.el6.noarch aeolus-conductor-doc-0.8.0-8.el6.noarch aeolus-all-0.8.0-8.el6.noarch