Uploaded image for project: 'PUBLIC - Liferay Portal Community Edition'
  1. PUBLIC - Liferay Portal Community Edition
  2. LPS-26181

Repeated auto login attempt from old credentials stored in cookies

    Details

      Description

      1) Checked Auto Login in Portal settings --> authentication. Left all other options unchecked.
      2) Checked "enabled" box in the and left "required" unchecked.
      3) Entered the LDAP configuration information. Saved the page.

      Liferay began to throw LDAP errors in log repeatedly (initially for invalid credentials and later for locked user). On further analysis found that Liferay takes old user credentials from cookies (an incorrect password I tried before) and tries to validate. It keeps on trying authentication repeatedly. After 3 attempt my LDAP locks me out. I had to call helpdesk a dozen times each day to unlock my id (Now they know me on first name basis .

      Why does liferay even attempt to authenticates when I am already logged in? Why does it do repeatedly?

        Attachments

          Activity

            People

            • Votes:
              0 Vote for this issue
              Watchers:
              0 Start watching this issue

              Dates

              • Created:
                Updated:
                Resolved:
                Days since last comment:
                1 year, 48 weeks, 6 days ago

                Subcomponents