-
Bug Report
-
Resolution: Won't Fix
-
L3 - Default
-
None
-
7.9.6
-
None
Steps to Reproduce
- go to Cockpits dashboard
- manipulate the CSRF token
- refresh the page
--> session expires and the user has to log in again (this works as expected)
Problem
When trying to log in again the authentication failed
Hint
I need to refresh the page to be able to log in again.
Different behavior when using wildfly 10. The XSRF token will be renewed automatically without session expiration.
With WLS12R2 it works as expected.
Use environment
Engine: jboss-7.9.6 / apache 7.8.12
Browser: Firefox
OS: Linux
This is the controller panel for Smart Panels app
- is related to
-
CAM-9246 Cannot recover from CSRF error without session timeout
- Closed