Uploaded image for project: 'Jenkins'
  1. Jenkins
  2. JENKINS-23020

Manage->Cancel Shutdown requests POST method and even POST fails due to invalid crumb if CSRF protection is enabled

    XMLWordPrintable

    Details

    • Similar Issues:

      Description

      When trying to cancel shutdown mode via

      Manage->Cancel Shutdown
      or
      Cancel link of Build Queue

      Jenkins shows

      POST is required for jenkins.model.Jenkins.doCancelQuietDown

      together with a Try POSTing button.

      If the Try POSTing button is pressed cancel is working with CSRF protection disabled.

      But with CSRF protection enabled (in Manage->Configure Global Security) after the Try POSTing button Jenkins shows

      Invalid Crumb

      error which effectively means there is currently no way to cancel from shutdown mode if CSRF protection is enabled.

        Attachments

          Activity

          klou Kurt created issue -
          jglick Jesse Glick made changes -
          Field Original Value New Value
          Labels regression
          URL https://github.com/jenkinsci/jenkins/pull/1306
          danielbeck Daniel Beck made changes -
          Status Open [ 1 ] Resolved [ 5 ]
          Resolution Fixed [ 1 ]
          danielbeck Daniel Beck made changes -
          Labels regression lts-candidate regression
          olivergondza Oliver Gond┼ża made changes -
          Labels lts-candidate regression 1.580.2-fixed regression
          rtyler R. Tyler Croy made changes -
          Workflow JNJira [ 155340 ] JNJira + In-Review [ 195166 ]

            People

            • Assignee:
              Unassigned
              Reporter:
              klou Kurt
            • Votes:
              4 Vote for this issue
              Watchers:
              10 Start watching this issue

              Dates

              • Created:
                Updated:
                Resolved: