login.jsp page is still visible/accessible after being authenticated by pre-authentication

Description

When you authenticate to OpenNMS using the pre-authentication configuration, the login.jsp page is still accessible. This can be a problem if you go directly to a URL like:

https://demo.opennms.com/opennms/login.jsp

You will be authenticated through the config in header-preauth.xml, and then will be directed back to the login page even though you are already authenticated. This page should have some way of knowing you are authenticated and then redirect to the main dashboard page (just chop off the login.jsp or direct to index.jsp).

Related documentation is here:

https://docs.opennms.com/horizon/29/operation/user-management/pre-authentication.html

Related issue to a recent bug fix with preauth: https://opennms.atlassian.net/browse/NMS-14059#icft=NMS-14059

Acceptance / Success Criteria

None

Confluence content

mentioned on

Lucidchart Diagrams

Activity

Show:

fooker September 13, 2023 at 2:29 PM

Jeff Gehlbach August 7, 2023 at 9:11 PM

Let’s re-target an updated fix to foundation-2023 for the September releases. We can deal with any requests for back-ports to older Meridians if and when they materialize.

Benjamin Reed August 7, 2023 at 8:59 PM

I missed that this branch was made without -smoke suffix, so the smoke tests never ran; it ended up breaking things

fooker August 3, 2023 at 9:29 AM

Fixed

Details

Assignee

Reporter

HB Grooming Date

HB Backlog Status

Doc Backlog Status

Doc Backlog Grooming Date

Sprint

Priority

PagerDuty

Created March 15, 2022 at 6:58 PM
Updated October 10, 2023 at 2:55 PM
Resolved September 14, 2023 at 9:31 AM

Flag notifications