in src/main/java/org/apache/geronimo/microprofile/impl/jwtauth/jaxrs/RolesAllowedRequestFilter.java [47:56]
public void filter(final ContainerRequestContext context) throws IOException {
if (denyAll) {
context.abortWith(forbidden);
} else if (!permitAll) {
final SecurityContext securityContext = context.getSecurityContext();
if (securityContext == null || roles.stream().noneMatch(securityContext::isUserInRole)) {
context.abortWith(forbidden);
}
}
}