Uploaded image for project: 'Jenkins'
  1. Jenkins
  2. JENKINS-52701

SAML Auth Provider doesn't allow api tokens to authenticate

    Details

    • Similar Issues:

      Description

      Using an API token configured for a user doesn't allow access to the api e.g. accessing https://user:apitoken@jenkins/crumbIssuer/api/json causes a redirect to the saml auth provider instead of authenticating with the users apitoken.

        Attachments

          Activity

          Hide
          jsharpe James Sharpe added a comment -

          I've just regenerated the tokens under a user that authenticates with saml and it works now. The user for which it was failing was a user that wouldn't be authenticated via saml and was probably using a legacy api token.

          Show
          jsharpe James Sharpe added a comment - I've just regenerated the tokens under a user that authenticates with saml and it works now. The user for which it was failing was a user that wouldn't be authenticated via saml and was probably using a legacy api token.
          Hide
          ifernandezcalvo Ivan Fernandez Calvo added a comment -

          so it is resolved, right?

          Show
          ifernandezcalvo Ivan Fernandez Calvo added a comment - so it is resolved, right?
          Hide
          jsharpe James Sharpe added a comment -

          Yes, sorry for the noise

          Show
          jsharpe James Sharpe added a comment - Yes, sorry for the noise
          Hide
          bvinayprasad Vinay B added a comment -

          I'm facing the same issue. Its redirecting to the SAML Auth Provider instead of authenticating with the username and api token. Am on 2.179

          Show
          bvinayprasad Vinay B added a comment - I'm facing the same issue. Its redirecting to the SAML Auth Provider instead of authenticating with the username and api token. Am on 2.179
          Hide
          ifernandezcalvo Ivan Fernandez Calvo added a comment -

          Vinay B see the James comments, the user has to login at least once to grab the groups and create the user, also it should be a SAML real user.

          Show
          ifernandezcalvo Ivan Fernandez Calvo added a comment - Vinay B see the James comments, the user has to login at least once to grab the groups and create the user, also it should be a SAML real user.

            People

            • Assignee:
              ifernandezcalvo Ivan Fernandez Calvo
              Reporter:
              jsharpe James Sharpe
            • Votes:
              0 Vote for this issue
              Watchers:
              3 Start watching this issue

              Dates

              • Created:
                Updated:
                Resolved: