Bug 1427172

Summary: trying to log in with user admin after timeout on different user will get the UI stuck on login + error on wrong credentials will show in log
Product: Red Hat CloudForms Management Engine Reporter: Satoe Imaishi <simaishi>
Component: UI - OPSAssignee: Martin Hradil <mhradil>
Status: CLOSED ERRATA QA Contact: Dafna Ron <dron>
Severity: medium Docs Contact:
Priority: high    
Version: 5.7.0CC: dajohnso, hkataria, jhardy, mpovolny, obarenbo
Target Milestone: GAKeywords: ZStream
Target Release: 5.7.2   
Hardware: x86_64   
OS: Linux   
Whiteboard: rbac
Fixed In Version: 5.7.2.0 Doc Type: If docs needed, set a value
Doc Text:
Story Points: ---
Clone Of: 1417661 Environment:
Last Closed: 2017-04-12 14:40:04 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: CFME Core Target Upstream Version:
Embargoed:
Bug Depends On: 1417661    
Bug Blocks:    

Comment 2 CFME Bot 2017-03-09 18:31:05 UTC
New commit detected on ManageIQ/manageiq/euwe:
https://github.com/ManageIQ/manageiq/commit/e5460da9a192af8b6eecab435091796faac460a8

commit e5460da9a192af8b6eecab435091796faac460a8
Author:     Martin Hradil <himdel>
AuthorDate: Wed Feb 22 15:34:25 2017 +0000
Commit:     Satoe Imaishi <simaishi>
CommitDate: Thu Mar 9 13:28:22 2017 -0500

    Merge pull request #451 from martinpovolny/skip_pff_for_authenticate
    
    Skip protect_from_forgery for #authenticate
    (cherry picked from commit c845be80c5b6800b4824cf3ef89ea937a32dc1bb)
    
    https://bugzilla.redhat.com/show_bug.cgi?id=1427172

 app/controllers/application_controller.rb | 2 +-
 app/views/layouts/login.html.haml         | 1 -
 2 files changed, 1 insertion(+), 2 deletions(-)

Comment 3 Dafna Ron 2017-04-03 14:39:38 UTC
verified on cfme-gemset-5.7.2.0-1.el7cf.x86_64

Comment 5 errata-xmlrpc 2017-04-12 14:40:04 UTC
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.

For information on the advisory, and where to find the updated
files, follow the link below.

If the solution does not work for you, open a new bug report.

https://access.redhat.com/errata/RHSA-2017:0898