Uploaded image for project: 'Jenkins'
  1. Jenkins
  2. JENKINS-8815

you cannot use the cli without giving Overall read to Anonymous




      I don't know that this is a bug or a feature, but I've noticed, that one cannot authenticate with a valid account through cli without giving Overall read permission for the Anonymous account.
      I'm using LDAP security, and if I remove that right from Anonymous, I get the

      build:~# java -jar jenkins-cli.jar -s http://localhost:8080/ help --username tyrael --password-file pwd
      Exception in thread "main" java.io.IOException: Server returned HTTP response code: 403 for URL: http://localhost:8080/cli
      at sun.net.www.protocol.http.HttpURLConnection.getInputStream(HttpURLConnection.java:1441)
      at hudson.cli.FullDuplexHttpStream.<init>(FullDuplexHttpStream.java:61)
      at hudson.cli.CLI.<init>(CLI.java:91)
      at hudson.cli.CLI.<init>(CLI.java:63)
      at hudson.cli.CLI.main(CLI.java:176)

      the same command works if I set the above mentioned right to the Anonymous account.


        Issue Links


            tyrael Ferenc Kovacs created issue -
            kohsuke Kohsuke Kawaguchi made changes -
            Field Original Value New Value
            Link This issue is duplicated by JENKINS-8814 [ JENKINS-8814 ]
            tyrael Ferenc Kovacs made changes -
            Issue Type Improvement [ 4 ] Bug [ 1 ]
            vjuranek vjuranek made changes -
            Resolution Fixed [ 1 ]
            Status Open [ 1 ] Resolved [ 5 ]
            kohsuke Kohsuke Kawaguchi made changes -
            Assignee Steven Christou [ schristou ]
            Resolution Fixed [ 1 ]
            Status Resolved [ 5 ] Reopened [ 4 ]
            scm_issue_link SCM/JIRA link daemon made changes -
            Resolution Fixed [ 1 ]
            Status Reopened [ 4 ] Resolved [ 5 ]
            schristou Steven Christou made changes -
            Labels lts-candidate
            olivergondza Oliver Gond┼ża made changes -
            Labels lts-candidate 1.532.2-fixed
            jglick Jesse Glick made changes -
            Link This issue depends on SECURITY-192 [ SECURITY-192 ]
            rtyler R. Tyler Croy made changes -
            Workflow JNJira [ 138959 ] JNJira + In-Review [ 188251 ]


              schristou Steven Christou
              tyrael Ferenc Kovacs
              0 Vote for this issue
              4 Start watching this issue