https://www.redmine.org/https://www.redmine.org/favicon.ico?16793021292010-03-11T19:48:37ZRedmineRedmine - Defect #5051: Cookie issue when using Redmine on Firefoxhttps://www.redmine.org/issues/5051?journal_id=150562010-03-11T19:48:37ZJean-Philippe Langjp_lang@yahoo.fr
<ul></ul><p>Please give the detailed steps that shows the problem.</p> Redmine - Defect #5051: Cookie issue when using Redmine on Firefoxhttps://www.redmine.org/issues/5051?journal_id=152842010-03-19T04:57:04ZEwan Makepeace
<ul></ul><p>Am getting the 'Invalid form authenticity token.' message quite often these days. It seems to be related to whether I have recently logged in on another browser (since I started with Chrome for Mac) but I am unsure. What I do know is that it is incredibly frustrating, because when it starts to happen I often cannot access Redmine for some time and may have to switch browsers, restart the browser, delete all cookies or reboot (am still not quite sure which is the magic incantation).</p> Redmine - Defect #5051: Cookie issue when using Redmine on Firefoxhttps://www.redmine.org/issues/5051?journal_id=153132010-03-20T15:23:56ZNikolay Kotlyarov
<ul></ul><p><strong>Way to reproduce</strong> (using Firefox on windows):<br />Log in redmine choosing the "remember me" check box.<br />Then use redmine for a while closing and opening the browser (which logs automatically).<br />After that click the "log out" link and<br />try to log in -- the error "Invalid form authenticity token." appears:(</p>
<p>Redmine version: 0.9.3</p> Redmine - Defect #5051: Cookie issue when using Redmine on Firefoxhttps://www.redmine.org/issues/5051?journal_id=153142010-03-20T15:27:29ZNikolay Kotlyarov
<ul></ul><p>+ trying to log in after actions above using IE -- same error.</p> Redmine - Defect #5051: Cookie issue when using Redmine on Firefoxhttps://www.redmine.org/issues/5051?journal_id=153152010-03-20T15:32:15ZNikolay Kotlyarov
<ul></ul><p>found also:<br />the error appears <em>independently</em> of username and password entered.</p> Redmine - Defect #5051: Cookie issue when using Redmine on Firefoxhttps://www.redmine.org/issues/5051?journal_id=153782010-03-23T10:55:50ZNikolay Kotlyarov
<ul></ul><p>Sorry, my error was due to redmine_time_tracker plugin..</p> Redmine - Defect #5051: Cookie issue when using Redmine on Firefoxhttps://www.redmine.org/issues/5051?journal_id=164622010-05-05T11:56:45ZFritz brause
<ul></ul><p><strong>Way to reproduce</strong> (using Firefox,Safari,Chrome on Mac):<br />- Login redmine<br />- choose project<br />- choose ticket<br />- click on "Log time" <br />- enterning valid data to the "Spent time"-Form<br />- click save</p>
<p>-> Result "Invalid form authenticity token."</p> Redmine - Defect #5051: Cookie issue when using Redmine on Firefoxhttps://www.redmine.org/issues/5051?journal_id=164672010-05-05T12:32:03ZNikolay Kotlyarov
<ul></ul><p>Fritz brause wrote:</p>
<blockquote>
<p>-> Result "Invalid form authenticity token."</p>
</blockquote>
<p>For me reproducing was without errors.</p>
<p>Have you installed any plugins? (especially some time logging plugins?)<br />Try to reproduce your bug after disabling/deleting them.</p> Redmine - Defect #5051: Cookie issue when using Redmine on Firefoxhttps://www.redmine.org/issues/5051?journal_id=164712010-05-05T12:49:44ZFritz brause
<ul></ul><p>Nikolay Kotlyarov wrote:</p>
<blockquote>
<p>Have you installed any plugins? (especially some time logging plugins?)</p>
</blockquote>
<p>No, i didn't install any plugins, it's "plain redmine" - The Debian release for squeeze.</p> Redmine - Defect #5051: Cookie issue when using Redmine on Firefoxhttps://www.redmine.org/issues/5051?journal_id=164732010-05-05T12:57:54ZNikolay Kotlyarov
<ul></ul><p>Fritz brause wrote:</p>
<blockquote>
<p>No, i didn't install any plugins, it's "plain redmine" - The Debian release for squeeze.</p>
</blockquote>
<p>Check what happens in your environment's log when reproducing the bug (for RAILS_ENV="production": production.log in redmine/log).</p>
<blockquote>
<p>(using Firefox,Safari,Chrome on Mac):</p>
</blockquote>
<p>is it only Mac issue, or on other platforms the result is the same?</p> Redmine - Defect #5051: Cookie issue when using Redmine on Firefoxhttps://www.redmine.org/issues/5051?journal_id=164792010-05-05T17:19:53ZFritz brause
<ul></ul><p>Nikolay Kotlyarov wrote:</p>
<blockquote>
<p>is it only Mac issue, or on other platforms the result is the same?</p>
</blockquote>
<p>Same behavior on an WindowsXP FF</p> Redmine - Defect #5051: Cookie issue when using Redmine on Firefoxhttps://www.redmine.org/issues/5051?journal_id=164872010-05-05T19:59:06ZFritz brause
<ul></ul><p>Maybe a Cookie Problem:<br />Because when i view at all the redmine-cookies, there is for each path an own cookie, is this a normal behavior?</p> Redmine - Defect #5051: Cookie issue when using Redmine on Firefoxhttps://www.redmine.org/issues/5051?journal_id=164902010-05-05T20:35:50ZFritz brause
<ul></ul><p>Nikolay Kotlyarov wrote:</p>
<blockquote>
<p>Check what happens in your environment's log when reproducing the bug (for RAILS_ENV="production": production.log in redmine/log).</p>
</blockquote>
<p>My Logfile Login:<br /><pre>
Processing AccountController#login (for 78.42.130.210 at 2010-05-05 22:34:30) [POST]
Parameters: {"back_url"=>"https%3A%2F%2F+++%2Flogin%3Fback_url%3Dhttps%3A%2F%2F+++%2Fissues%2F6", "action"=>"login", "authenticity_token"=>"34b450a791fe21e942b0936fe663865d48c969d0", "username"=>"fb", "controller"=>"account", "password"=>"[FILTERED]", "login"=>"Anmelden \302\273"}
Redirected to controllermyactionpage
Completed in 15ms (DB: 9) | 302 Found [https://++/login]
</pre></p>
<p>Changing to the Issue Page:<br /><pre>
Processing TimelogController#edit (for 78.42.130.210 at 2010-05-05 22:36:23) [GET]
Parameters: {"issue_id"=>"7", "action"=>"edit", "controller"=>"timelog"}
Rendering template within layouts/base
Rendering timelog/edit
Completed in 61ms (View: 40, DB: 1) | 200 OK [https://+++/issues/7/time_entries/new]
</pre></p>
<p>After Submitting the timelog...<br /><pre>
Processing TimelogController#edit (for 78.42.130.210 at 2010-05-05 22:37:23) [POST]
Parameters: {"time_entry"=>{"comments"=>"134", "issue_id"=>"7", "activity_id"=>"9", "spent_on"=>"2010-05-05", "hours"=>"1"}, "back_url"=>"https%3A%2F%2F+++%2Fissues%2F7", "commit"=>"Save", "project_id"=>"redmine", "action"=>"edit", "authenticity_token"=>"f3facdd3991dd20d70381df4fdcfa069f197304d", "controller"=>"timelog"}
Rendering template within layouts/base
</pre></p>
<p>- The authenticity_token is note the same as after the login.<br />- i got 3 Cookies for 3 pathes with different values.</p> Redmine - Defect #5051: Cookie issue when using Redmine on Firefoxhttps://www.redmine.org/issues/5051?journal_id=165042010-05-06T07:52:28ZNikolay Kotlyarov
<ul></ul><p>You are using secure connection. That's why cookies may be different each time..<br />Maybe that is due to your local network settings.. Or maybe that's due to server SSL settings.</p>
<p>How did you set up your redmine service? (apache(noSSL|OpenSSL)/nginx/etc + webrick/mongrel/thin/etc)</p>
To localize the problem try the following:<br />log on to server(to exclude local network case) and see if the problem reproduces when
<ul>
<li>connecting directly from server to apache/etc (localhost/127.0.0.1/0.0.0.1)</li>
<li>connecting directly from server to mongrel/thin service (localgost:3000)</li>
</ul> Redmine - Defect #5051: Cookie issue when using Redmine on Firefoxhttps://www.redmine.org/issues/5051?journal_id=165062010-05-06T08:08:38ZFritz brause
<ul><li><strong>File</strong> <a href="/attachments/3700">cookie_path.gif</a> <a class="icon-only icon-download" title="Download" href="/attachments/download/3700/cookie_path.gif">cookie_path.gif</a> added</li></ul><p>Nikolay Kotlyarov wrote:</p>
<blockquote>
<p>You are using secure connection. That's why cookies may be different each time..</p>
</blockquote>
<p>may i am wrong, but this shouldn't happen - the cookie may change his value but not one Cookie for each path: image attached:</p>
<blockquote>
<p>How did you set up your redmine service? (apache(noSSL|OpenSSL)/nginx/etc + webrick/mongrel/thin/etc)</p>
</blockquote>
<p>Apache mod_ssl, our setup runs on over 400 Servers.</p>
<blockquote>
To localize the problem try the following:<br />log on to server(to exclude local network case) and see if the problem reproduces when
<ul>
<li>connecting directly from server to apache/etc (localhost/127.0.0.1/0.0.0.1)</li>
</ul>
</blockquote>
<p>127.0.0.1 is localhost and not set to our Redmine Virtual Host ;-) I dont think this issue belongs to SSL.</p> Redmine - Defect #5051: Cookie issue when using Redmine on Firefoxhttps://www.redmine.org/issues/5051?journal_id=166102010-05-10T06:59:57ZFritz brause
<ul></ul><p>an other related bug ? <a class="issue tracker-1 status-5 priority-4 priority-default closed" title="Defect: Invalid autenticity token (Closed)" href="https://www.redmine.org/issues/5387">#5387</a></p> Redmine - Defect #5051: Cookie issue when using Redmine on Firefoxhttps://www.redmine.org/issues/5051?journal_id=166122010-05-10T08:02:05ZFritz brause
<ul></ul><p>By the Way:</p>
<p>if i "update" the Issue, i can add a time an everthing ist well, but just logging an Time Log is not possible in any way for me.</p> Redmine - Defect #5051: Cookie issue when using Redmine on Firefoxhttps://www.redmine.org/issues/5051?journal_id=167262010-05-14T17:20:43ZLluís Vilanova
<ul></ul><p>Issue <a class="issue tracker-1 status-5 priority-4 priority-default closed" title="Defect: Invalid autenticity token (Closed)" href="https://www.redmine.org/issues/5387">#5387</a> contains an explanation of why this might have already been resolved.</p> Redmine - Defect #5051: Cookie issue when using Redmine on Firefoxhttps://www.redmine.org/issues/5051?journal_id=167542010-05-15T17:56:40ZFritz brause
<ul></ul><p>hallo Lluís Vilanova, an Debian-Update fixed this for me.</p> Redmine - Defect #5051: Cookie issue when using Redmine on Firefoxhttps://www.redmine.org/issues/5051?journal_id=167552010-05-15T17:56:58ZFritz brause
<ul></ul><p>Thanks a lot!</p> Redmine - Defect #5051: Cookie issue when using Redmine on Firefoxhttps://www.redmine.org/issues/5051?journal_id=167562010-05-15T18:57:56ZFelix Schäfer
<ul><li><strong>Status</strong> changed from <i>New</i> to <i>Closed</i></li><li><strong>Resolution</strong> set to <i>Duplicate</i></li></ul><p>I'll flag this as fixed, the resolution seems to be in <a class="issue tracker-3 status-5 priority-5 priority-high2 closed" title="Patch: session cookie path does not respect RAILS_RELATIVE_URL_ROOT (Closed)" href="https://www.redmine.org/issues/3968">#3968</a>.</p> Redmine - Defect #5051: Cookie issue when using Redmine on Firefoxhttps://www.redmine.org/issues/5051?journal_id=210852010-10-07T03:41:13ZEwan Makepeace
<ul><li><strong>Status</strong> changed from <i>Closed</i> to <i>Reopened</i></li></ul><p>In version Redmine 1.0.1.devel.4167 (MySQL) I am still seeing this problem every day. See <a class="issue tracker-1 status-1 priority-4 priority-default" title="Defect: Invalid form authenticity token. (New)" href="https://www.redmine.org/issues/5230">#5230</a> ?</p> Redmine - Defect #5051: Cookie issue when using Redmine on Firefoxhttps://www.redmine.org/issues/5051?journal_id=211302010-10-07T21:26:11ZFelix Schäfer
<ul></ul><p>Ewan Makepeace wrote:</p>
<blockquote>
<p>In version Redmine 1.0.1.devel.4167 (MySQL) I am still seeing this problem every day. See <a class="issue tracker-1 status-1 priority-4 priority-default" title="Defect: Invalid form authenticity token. (New)" href="https://www.redmine.org/issues/5230">#5230</a> ?</p>
</blockquote>
<p>What now, a cookie or an invalid authenticity token problem?</p> Redmine - Defect #5051: Cookie issue when using Redmine on Firefoxhttps://www.redmine.org/issues/5051?journal_id=443322013-01-15T08:24:00ZJan Niggemann (redmine.org team member)jan.niggemann@redmine.org
<ul><li><strong>Status</strong> changed from <i>Reopened</i> to <i>Closed</i></li><li><strong>Resolution</strong> changed from <i>Duplicate</i> to <i>No feedback</i></li></ul><p>We are currently clearing the tracker, I'm closing this one because it lacks feedback and is about a very old release.</p> Redmine - Defect #5051: Cookie issue when using Redmine on Firefoxhttps://www.redmine.org/issues/5051?journal_id=659422015-09-11T06:39:19ZToshi MARUYAMA
<ul><li><strong>Related to</strong> <i><a class="issue tracker-1 status-1 priority-4 priority-default" href="/issues/5230">Defect #5230</a>: Invalid form authenticity token.</i> added</li></ul>