Saving Jenkins Global Config wipes out the crumb issuer settings in the Global Security Config

This issue is archived. You can view it, but you can't modify it. Learn more

XMLWordPrintable

    • Type: Bug
    • Resolution: Fixed
    • Priority: Blocker
    • Component/s: core
    • Environment:
      Windows Server 2008 R2 SP1
      Jenkins 1.502

      When I go and enable the Prevent Cross Site Request Forgery exploits setting in the Configure Global Security page and save it everything seems to work fine. If I then go and update settings in the Global Configure System page the Prevent Cross Site Request Forgery Exploits setting is wiped out from the global config.xml file. This is easily seen by the JobConfigHistory plugin.

            Assignee:
            Jesse Glick
            Reporter:
            Peter Nordquist
            Archiver:
            Jenkins Service Account

              Created:
              Updated:
              Resolved:
              Archived: