grouper-users - [grouper-users] Re: CSRF Error (Grouper 2.3.0 login w/ Cas)
Subject: Grouper Users - Open Discussion List
List archive
- From: Akki Kumar <>
- To: "Hyzer, Chris" <>
- Cc: "" <>
- Subject: [grouper-users] Re: CSRF Error (Grouper 2.3.0 login w/ Cas)
- Date: Wed, 3 May 2017 10:08:03 -0400
- Ironport-phdr: 9a23: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
Are you fully patched? Stop tomcat, delete all logs, put this in log4j.properties:
log4j.logger.edu.internet2.
middleware.grouper.ui. GrouperUiFilter = DEBUG
start tomcat, and send all logs.
Thanks
Chris
From: Akki Kumar [mailto:]
Sent: Tuesday, May 02, 2017 3:06 PM
To: Hyzer, Chris <>
Cc:
Subject: CSRF Error (Grouper 2.3.0 login w/ Cas)
Hi Chris,
I installed Grouper 2.3.0 (Fresh Installation) and Tomcat 8.5.12. After login to the Grouper, UI displays below error:
Maybe your session timed out and you need to start again. This should not happen under normal operation. CSRF error.
I clicked on the "start over" link and I get below error:You have an anonymous session since you are not logged in, but this section requires you to be logged in. Maybe No username found. Your identity provider might not be sending your username to this application. Either you need to use a different identity provider, or ask your IT department to send your username to this application.
As per below ticket (GRP-996), CSRF bug is fixed in 2.2.0, but the error is still showing up for the Grouper 2.3.0. What configuration are needed to fix this issue?
Thank you,
Akki
- [grouper-users] CSRF Error (Grouper 2.3.0 login w/ Cas), Akki Kumar, 05/02/2017
- [grouper-users] RE: CSRF Error (Grouper 2.3.0 login w/ Cas), Hyzer, Chris, 05/03/2017
- [grouper-users] Re: CSRF Error (Grouper 2.3.0 login w/ Cas), Akki Kumar, 05/03/2017
- [grouper-users] RE: CSRF Error (Grouper 2.3.0 login w/ Cas), Hyzer, Chris, 05/03/2017
- [grouper-users] Re: CSRF Error (Grouper 2.3.0 login w/ Cas), Akki Kumar, 05/03/2017
- [grouper-users] RE: CSRF Error (Grouper 2.3.0 login w/ Cas), Hyzer, Chris, 05/03/2017
- [grouper-users] Re: CSRF Error (Grouper 2.3.0 login w/ Cas), Akki Kumar, 05/03/2017
- [grouper-users] Re: CSRF Error (Grouper 2.3.0 login w/ Cas), Akki Kumar, 05/03/2017
- [grouper-users] Re: CSRF Error (Grouper 2.3.0 login w/ Cas), Akki Kumar, 05/03/2017
- [grouper-users] RE: CSRF Error (Grouper 2.3.0 login w/ Cas), Hyzer, Chris, 05/03/2017
- [grouper-users] Re: CSRF Error (Grouper 2.3.0 login w/ Cas), Akki Kumar, 05/03/2017
- [grouper-users] RE: CSRF Error (Grouper 2.3.0 login w/ Cas), Hyzer, Chris, 05/03/2017
- [grouper-users] Re: CSRF Error (Grouper 2.3.0 login w/ Cas), Akki Kumar, 05/03/2017
- [grouper-users] RE: CSRF Error (Grouper 2.3.0 login w/ Cas), Hyzer, Chris, 05/03/2017
Archive powered by MHonArc 2.6.19.