Fix report link: HTTP basic auth for local users broken

Description

Recent changes broke the ability for locally authenticated users to use the report link. Research and fix.

Environment

None

caused by

Activity

Show:

Jason Klinger February 21, 2024 at 1:40 PM
Edited

Testing:

This issue broke the basic http authentication which is used by Strategic Solutions. This has been re-enabled and can be tested using Postman.

  • You will want to retest the report link with tokens as done in the linked issue.

  • We want to simulate what Strategic Solutions uses, so we will need to use a report link without tokens added. Using Postman, you can test basic http authentication, under the Authentication tab. Select Basic Auth, and then enter a username/password for a USAS user in the boxes to the right.

  • You should be able to get a copy of the report using basic http authentication if the credentials are correct. NOTE: basic http authentication will create a cookie with a session id, so you will need to delete this for every attempt with different credentials. (Click the cookies link under the Send button, and delete the cookies inside).

Jodi Becher February 20, 2024 at 1:10 PM

Received email from Dave Smith of SCView stating our 2024.2.0 release broke HTTP basic auth for locally authenticated users. They utilities the report download link for several downloads daily for their 90 mutual customers.

Done

Details

Assignee

Reporter

Story Points

Fix versions

Sprint

Priority

Better PDF Exporter

Created February 20, 2024 at 1:04 PM
Updated February 27, 2024 at 11:08 PM
Resolved February 21, 2024 at 9:40 PM