Bug 1445944 - [downstream clone - 4.1.2] User can no longer use API having password with special character "+".
Summary: [downstream clone - 4.1.2] User can no longer use API having password with s...
Keywords:
Status: CLOSED ERRATA
Alias: None
Product: Red Hat Enterprise Virtualization Manager
Classification: Red Hat
Component: ovirt-engine
Version: 4.0.7
Hardware: Unspecified
OS: Unspecified
unspecified
medium
Target Milestone: ovirt-4.1.2
: ---
Assignee: Ravi Nori
QA Contact: Gonza
URL:
Whiteboard:
Depends On: 1443645
Blocks:
TreeView+ depends on / blocked
 
Reported: 2017-04-26 21:05 UTC by rhev-integ
Modified: 2020-05-14 16:00 UTC (History)
9 users (show)

Fixed In Version:
Doc Type: If docs needed, set a value
Doc Text:
Clone Of: 1443645
Environment:
Last Closed: 2017-05-24 11:23:33 UTC
oVirt Team: Infra
Target Upstream Version:
Embargoed:


Attachments (Terms of Use)


Links
System ID Private Priority Status Summary Last Updated
Red Hat Product Errata RHEA-2017:1280 0 normal SHIPPED_LIVE Red Hat Virtualization Manager (ovirt-engine) 4.1.2 2017-05-24 15:18:48 UTC
oVirt gerrit 75668 0 master MERGED aaa: User can no longer use API having password with special character "+" 2017-04-26 21:05:26 UTC
oVirt gerrit 75694 0 ovirt-engine-4.1 MERGED aaa: User can no longer use API having password with special character "+" 2017-04-26 21:05:26 UTC

Description rhev-integ 2017-04-26 21:05:02 UTC
+++ This bug is a downstream clone. The original bug is: +++
+++   bug 1443645 +++
======================================================================

Description of problem:
Super user having password with a special character "+" can not use API and it will fail with error:
"HTTP/1.1 401 Unauthorized"


Version-Release number of selected component (if applicable):
rhevm-4.0.7.4-0.1.el7ev.noarch

How reproducible:
Always

Steps to Reproduce:
1. Set password of admin@internal user having special character "+"/
2. Try to connect to API.
3.

Actual results:
401 Unauthorized

Expected results:
Should be able to connect to API.

Additional info:
Works fine in rhev 3.6.

(Originally by Ameya Charekar)

Comment 3 rhev-integ 2017-04-26 21:05:15 UTC
WARN: Bug status wasn't changed from MODIFIED to ON_QA due to the following reason:

[FOUND NON-ACKED FLAGS: {'rhevm-4.1.z': '?'}]

For more info please contact: rhv-devops

(Originally by rhev-integ)

Comment 5 Gonza 2017-05-10 08:27:59 UTC
Verified with:
rhevm-4.1.2.1-0.1.el7.noarch

User with '+' on password is able to successfully login to the API.

Comment 7 errata-xmlrpc 2017-05-24 11:23:33 UTC
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.

For information on the advisory, and where to find the updated
files, follow the link below.

If the solution does not work for you, open a new bug report.

https://access.redhat.com/errata/RHEA-2017:1280


Note You need to log in before you can comment on or make changes to this bug.