View Issue Details
ID | Project | Category | View Status | Date Submitted | Last Update |
---|---|---|---|---|---|
18169 | Bug reports | Plugins | public | 2022-06-02 09:28 | 2023-06-20 17:49 |
Reporter | DenisChenu | Assigned To | DenisChenu | ||
Priority | none | Severity | minor | ||
Status | closed | Resolution | fixed | ||
Product Version | 5.3.x | ||||
Summary | 18169: Potential redirect loop with Authwebserver | ||||
Description | If an user are connected via web but don't have right to connect to limesurvey : there are a redirect loop | ||||
Steps To Reproduce | Steps to reproduceConnect as superadmin (and stay connected) Expected resultredirect loop Actual resultThrow a 401 OR show login form | ||||
Tags | No tags attached. | ||||
Bug heat | 2 | ||||
Complete LimeSurvey version number (& build) | 5.3.18 | ||||
I will donate to the project if issue is resolved | No | ||||
Browser | not relevant | ||||
Database type & version | not relevant | ||||
Server OS (if known) | not relevant | ||||
Webserver software & version (if known) | not relevant | ||||
PHP Version | not relevant | ||||
related to | 17654 | closed | DenisChenu | spurious error "Incorrect username and/or password!" on auth_webserver autocreating user |
Found when working on https://bugs.limesurvey.org/view.php?id=17654 401 : sure if Authwebserver is default, unsure if not. |
|
The issue is about Permission checking. Permission is checked in newUserSession , but not in beforeLogin After fix : no loop 401 is default, DBauth if not. |
|
Date Modified | Username | Field | Change |
---|---|---|---|
2022-06-02 09:28 | DenisChenu | New Issue | |
2022-06-02 09:29 | DenisChenu | Note Added: 70195 | |
2022-06-02 09:29 | DenisChenu | Bug heat | 0 => 2 |
2022-06-02 09:29 | DenisChenu | Assigned To | => DenisChenu |
2022-06-02 09:29 | DenisChenu | Status | new => assigned |
2022-06-02 09:36 | DenisChenu | Note Added: 70196 | |
2022-06-02 09:37 | DenisChenu | Assigned To | DenisChenu => |
2022-06-02 09:37 | DenisChenu | Status | assigned => ready for code review |
2022-06-02 09:37 | DenisChenu | Relationship added | related to 17654 |
2022-06-06 12:02 | DenisChenu | Note Added: 70227 | |
2022-07-22 10:02 | DenisChenu | Assigned To | => DenisChenu |
2022-07-22 10:02 | DenisChenu | Status | ready for code review => ready for merge |
2022-09-10 17:30 | DenisChenu | Assigned To | DenisChenu => ollehar |
2022-10-06 11:49 | DenisChenu | Assigned To | ollehar => DenisChenu |
2022-10-06 11:49 | DenisChenu | Status | ready for merge => resolved |
2022-10-06 11:49 | DenisChenu | Resolution | open => fixed |
2023-06-20 17:49 | c_schmitz | Status | resolved => closed |