Uploaded image for project: 'JCommune'
  1. JCommune
  2. JC-1185

Remember-me token exception in Spring Security

VotersWatchers
    XMLWordPrintable

    Details

    • Type: Bug
    • Status: Closed (View Workflow)
    • Priority: Major
    • Resolution: Fixed
    • Affects Version/s: 1.1 Larks
    • Fix Version/s: 1.4 Larks
    • Labels:
      None
    • Sprint:
      Larks 1.1, Larks 1.2, 1.3 Larks, 1.4 Larks

      Description

      We have the following error in production logs:

      "SEVERE: Servlet.service() for servlet spring-dispatcher threw exception
      org.springframework.security.web.authentication.rememberme.CookieTheftException: Invalid remember-me token (Series/token) mismatch. Implies previous cookie theft attack.
      	at org.springframework.security.web.authentication.rememberme.PersistentTokenBasedRememberMeServices.processAutoLoginCookie(PersistentTokenBasedRememberMeServices.java:90)
      	at org.springframework.security.web.authentication.rememberme.AbstractRememberMeServices.autoLogin(AbstractRememberMeServices.java:91)"

      So we must find the reason of this problem and resolve it as soon as possible.

        Attachments

          Issue Links

            Structure

              Activity

                People

                • Assignee:
                  julik Julia Atlygina
                  Reporter:
                  shogun Anuar Nurmakanov
                • Votes:
                  0 Vote for this issue
                  Watchers:
                  5 Start watching this issue

                  Dates

                  • Created:
                    Updated:
                    Resolved:

                    Time Tracking

                    Estimated:
                    Original Estimate - 0h
                    0h
                    Remaining:
                    Remaining Estimate - 0h
                    0h
                    Logged:
                    Time Spent - 22.75h
                    22.75h

                      Structure Helper Panel