Uploaded image for project: 'Jenkins'
  1. Jenkins
  2. JENKINS-3128

Error logging in when using matrix permissions with LDAP groups

    • Icon: Bug Bug
    • Resolution: Duplicate
    • Icon: Major Major
    • _unsorted
    • None
    • Platform: All, OS: All

      Hudson ver. 1.285

      1. When I enable "Matrix-based security".
      2. Add group foo.
      3. Grant all permissions to group foo.
      4. Login as a new user in group foo to hudson.
      5. Hudson displays following error

      Access Denied

      org.acegisecurity.providers.UsernamePasswordAuthenticationToken@a67154e0:
      Username: org.acegisecurity.userdetails.ldap.LdapUserDetailsImpl@5d82fe47;
      Password: [PROTECTED]; Authenticated: true; Details:
      org.acegisecurity.ui.WebAuthenticationDetails@166c8: RemoteIpAddress:
      10.2.18.121; SessionId: D4C5C9C3EE392793E8A40B73BE95B733; Granted Authorities:
      is missing Read

      User is definitely in the group
      Group definitely has all permissions

      I didn't test if this also applies to non-LDAP groups.

          [JENKINS-3128] Error logging in when using matrix permissions with LDAP groups

          smulcahy created issue -
          Kohsuke Kawaguchi made changes -
          Status Original: Open [ 1 ] New: In Progress [ 3 ]
          Alan Harder made changes -
          Resolution New: Duplicate [ 3 ]
          Status Original: In Progress [ 3 ] New: Resolved [ 5 ]
          Alan Harder made changes -
          Link New: This issue duplicates JENKINS-3459 [ JENKINS-3459 ]
          Andrew Bayer made changes -
          Status Original: Resolved [ 5 ] New: Closed [ 6 ]
          R. Tyler Croy made changes -
          Workflow Original: JNJira [ 133201 ] New: JNJira + In-Review [ 201988 ]
          Jenkins IRC Bot made changes -
          Component/s New: _unsorted [ 19622 ]
          Component/s Original: security [ 15508 ]

            Unassigned Unassigned
            smulcahy smulcahy
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

              Created:
              Updated:
              Resolved: