Change in ovirt-engine[master]: userportal, webadmin: XSRF token generation fix

awels at redhat.com awels at redhat.com
Mon Aug 11 20:08:35 UTC 2014


Alexander Wels has submitted this change and it was merged.

Change subject: userportal,webadmin: XSRF token generation fix
......................................................................


userportal,webadmin: XSRF token generation fix

- Fix token generation to use session id instead of passed
  in jsessionid cookie, as that value might be stale. This
  prevents a lot of 500 errors in the log due to automatic
  login.

Change-Id: I3e9a234bada73873f398d4220808f573810440dc
Bug-Url: https://bugzilla.redhat.com/show_bug.cgi?id=1115918
Signed-off-by: Alexander Wels <awels at redhat.com>
---
A frontend/webadmin/modules/frontend/src/main/java/org/ovirt/engine/ui/frontend/server/gwt/OvirtXsrfTokenServiceServlet.java
M frontend/webadmin/modules/frontend/src/main/resources/META-INF/web-fragment.xml
2 files changed, 28 insertions(+), 1 deletion(-)

Approvals:
  Alexander Wels: Verified; Looks good to me, approved



-- 
To view, visit http://gerrit.ovirt.org/30849
To unsubscribe, visit http://gerrit.ovirt.org/settings

Gerrit-MessageType: merged
Gerrit-Change-Id: I3e9a234bada73873f398d4220808f573810440dc
Gerrit-PatchSet: 6
Gerrit-Project: ovirt-engine
Gerrit-Branch: master
Gerrit-Owner: Alexander Wels <awels at redhat.com>
Gerrit-Reviewer: Alexander Wels <awels at redhat.com>
Gerrit-Reviewer: Alon Bar-Lev <alonbl at redhat.com>
Gerrit-Reviewer: Einav Cohen <ecohen at redhat.com>
Gerrit-Reviewer: Vojtech Szocs <vszocs at redhat.com>
Gerrit-Reviewer: automation at ovirt.org
Gerrit-Reviewer: oVirt Jenkins CI Server



More information about the Engine-commits mailing list