[JIRA] (JENKINS-57595) with GitHub OAuth plugin 0.31->0.32 Matrix-based security errors

29 views
Skip to first unread message

a.lanin@live.ru (JIRA)

unread,
May 22, 2019, 3:38:01 AM5/22/19
to jenkinsc...@googlegroups.com
Aleksandr Lanin created an issue
 
Jenkins / Bug JENKINS-57595
with GitHub OAuth plugin 0.31->0.32 Matrix-based security errors
Issue Type: Bug Bug
Assignee: Sam Gleske
Attachments: Selection_043.png
Components: github-oauth-plugin
Created: 2019-05-22 07:37
Environment: Jenkins 2.178 from docker jenkins/jenkins.
GitHub Authentication plugin 0.32
Matrix Authorization Strategy Plugin 2.4.2
behind jwilder/nginx-proxy:0.6.0
Labels: authentication website
Priority: Minor Minor
Reporter: Aleksandr Lanin

After upgrading GitHub OAuth plugin 0.31->0.32 I had errors at the Matrix-based security interface (Manage Jenkins->Configure Global Security)

"ERROR" instead of users names.

Click on "ERROR" show full error message:


HTTP ERROR 403

Problem accessing /jenkins/descriptorByName/hudson.security.GlobalMatrixAuthorizationStrategy/checkName. Reason:

Forbidden


I can't add new user. After "applay" i had error page":


HTTP ERROR 403

Problem accessing /jenkins/configureSecurity/configure. Reason:

No valid crumb was included in the request


 

Authentication itself work well.

Add Comment Add Comment
 
This message was sent by Atlassian Jira (v7.11.2#711002-sha1:fdc329d)

david.schneider@nextworld.net (JIRA)

unread,
May 29, 2019, 2:50:02 PM5/29/19
to jenkinsc...@googlegroups.com
David Schneider commented on Bug JENKINS-57595
 
Re: with GitHub OAuth plugin 0.31->0.32 Matrix-based security errors

Can we please get an ETA for resolving this issue?  We're currently blocked with setting up a new Jenkins server because we're not able to revert back to an earlier version of the plug-in.  Until this is resolved we can't set up user roles on the new server.

kevin@rkn.la (JIRA)

unread,
Jun 12, 2019, 6:09:03 AM6/12/19
to jenkinsc...@googlegroups.com

kevin@rkn.la (JIRA)

unread,
Jun 12, 2019, 6:09:03 AM6/12/19
to jenkinsc...@googlegroups.com
Kevin Nelson commented on Bug JENKINS-57595
 
Re: with GitHub OAuth plugin 0.31->0.32 Matrix-based security errors

This is happening on my install as well.  I'm raising the priority to Blocker, since it is currently impacting our organization's ability to use Jenkins at all.

kevin@rkn.la (JIRA)

unread,
Jun 12, 2019, 6:13:02 AM6/12/19
to jenkinsc...@googlegroups.com

To clarify our symptoms a bit:

We're using the GitHub OAuth plugin with a GitHub Enterprise install.  I'm able to configure the GitHub integration successfully, and use "Logged-in users can do anything" without issue.  I can save this, reload the page and everything works fine.

When I select the Matrix-based security radio, I am able to add exactly one user, and set all permissions, and save successfully.  When I try to add more than one user, or when I try to add subsequent users after the first one, I am hit with the "No valid crumb was included in the request" error.

kevin@rkn.la (JIRA)

unread,
Jun 12, 2019, 6:16:02 AM6/12/19
to jenkinsc...@googlegroups.com

kevin@rkn.la (JIRA)

unread,
Jun 12, 2019, 6:19:02 AM6/12/19
to jenkinsc...@googlegroups.com
Kevin Nelson edited a comment on Bug JENKINS-57595
To clarify our symptoms a bit:

We're using Jenkins 2.176.1 (LTS), the GitHub OAuth Authentication 0.32 plugin with a GitHub Enterprise install , and Matrix Authorization Strategy Plugin 2 . 4.2.  I'm able to configure the GitHub integration successfully, and use "Logged-in users can do anything" without issue.  I can save this, reload the page and everything works fine.


When I select the Matrix-based security radio, I am able to add exactly one user, and set all permissions, and save successfully.  When I try to add more than one user, or when I try to add subsequent users after the first one, I am hit with the "No valid crumb was included in the request" error.

martins.jakubovics@gmail.com (JIRA)

unread,
Jun 19, 2019, 7:27:03 AM6/19/19
to jenkinsc...@googlegroups.com

stszap@gmail.com (JIRA)

unread,
Jun 25, 2019, 5:22:03 PM6/25/19
to jenkinsc...@googlegroups.com

We are having exactly the same issue as Kevin Nelson described.

alli@allir.org (JIRA)

unread,
Jun 27, 2019, 5:38:02 PM6/27/19
to jenkinsc...@googlegroups.com

Exact same issue here too, with same versions.
0.32 of Github Authentication.
2.4.2 of Matrix Authorization.

roeera@gmail.com (JIRA)

unread,
Jul 2, 2019, 5:15:02 AM7/2/19
to jenkinsc...@googlegroups.com

roeera@gmail.com (JIRA)

unread,
Jul 2, 2019, 5:21:01 AM7/2/19
to jenkinsc...@googlegroups.com
Roee Rakovsky edited a comment on Bug JENKINS-57595
Have the exact problem - please fix ! 


Currently reverted to oauth 0.31

dbeck@cloudbees.com (JIRA)

unread,
Aug 1, 2019, 5:02:10 AM8/1/19
to jenkinsc...@googlegroups.com

sam.mxracer@gmail.com (JIRA)

unread,
Aug 5, 2019, 10:52:03 PM8/5/19
to jenkinsc...@googlegroups.com
Sam Gleske closed an issue as Duplicate
 

Closing as duplicate of JENKINS-57154

Change By: Sam Gleske
Status: Open Closed
Resolution: Duplicate
Reply all
Reply to author
Forward
0 new messages