You are viewing a plain text version of this content. The canonical link for it is here.
Posted to issues@airavata.apache.org by "Eroma (JIRA)" <ji...@apache.org> on 2018/06/21 17:51:00 UTC

[jira] [Comment Edited] (AIRAVATA-2552) Gateway user received 400+ account verification emails !!!

    [ https://issues.apache.org/jira/browse/AIRAVATA-2552?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16519583#comment-16519583 ] 

Eroma edited comment on AIRAVATA-2552 at 6/21/18 5:50 PM:
----------------------------------------------------------

Test cases

[https://pga.group-based-auth.scigap.org|https://pga.group-based-auth.scigap.org/]
 # Create a new gateway account and user clicks the verification link sent in mail. User gets verified, message in portal: ‘Your account has been successfully created. Please log in now.’ - PASS
 # Create a new gateway account in using gmail account. Click on the verification link after it expires. User see message ‘Account confirmation failed! We're sending another confirmation email. Please click the link in the confirmation email that you should be receiving soon.’ User is sent another mail with verification link – PASS
 # Create a new gateway account in using campus account. Click on the verification link, ‘Your account has been successfully created. Please log in now.’. User clicks it again before the link is expired. He see the message ‘Your account has been successfully created. Please log in now.’ and no new link is sent for another verification – PASS
 # Create a new gateway account in using campus account. Click on the verification link, ‘Your account has been successfully created. Please log in now.’. User clicks it again before the link is expired, and after he get access to the gateway (gateway user). He see the message ‘Your account has been successfully created. Please log in now.’ and no new link is sent for another verification – PASS
 # Create a new gateway account in using campus account. Click on the verification link, ‘Your account has been successfully created. Please log in now.’. User clicks it again after the link is expired, and after he get access to the gateway (admin). He see the message ‘Your account has been successfully created. Please log in now.’ and no new link is sent for another verification – PASS
 # User gets gateway-user role but get it changed to user-pending again. Now he goes and click an expired verification link. - PASS
 # User gets gateway-user role but get it changed to user-pending again. Now he goes and click still valid pre used verification link. No new verification links sent to the user. He see message ‘Your account has already been successfully created. Please log in now.’ – PASS
 # Use the link in different browsers. User should not get multiple email verification links after verifying the email. - PASS
 # NOTE: not tested with campus credentials/CILogon as email verification is not part of the process.


was (Author: eroma_a):
Test cases

[https://pga.group-based-auth.scigap.org|https://pga.group-based-auth.scigap.org/]
 # Create a new gateway account and user clicks the verification link sent in mail. User gets verified, message in portal: ‘Your account has been successfully created. Please log in now.’ - PASS
 # Create a new gateway account in using gmail account. Click on the verification link after it expires. User see message ‘Account confirmation failed! We're sending another confirmation email. Please click the link in the confirmation email that you should be receiving soon.’ User is sent another mail with verification link – PASS
 # Create a new gateway account in using campus account. Click on the verification link, ‘Your account has been successfully created. Please log in now.’. User clicks it again before the link is expired. He see the message ‘Your account has been successfully created. Please log in now.’ and no new link is sent for another verification – PASS
 # Create a new gateway account in using campus account. Click on the verification link, ‘Your account has been successfully created. Please log in now.’. User clicks it again before the link is expired, and after he get access to the gateway (gateway user). He see the message ‘Your account has been successfully created. Please log in now.’ and no new link is sent for another verification – PASS
 # Create a new gateway account in using campus account. Click on the verification link, ‘Your account has been successfully created. Please log in now.’. User clicks it again after the link is expired, and after he get access to the gateway (admin). He see the message ‘Your account has been successfully created. Please log in now.’ and no new link is sent for another verification – PASS
 # User gets gateway-user role but get it changed to user-pending again. Now he goes and click an expired verification link.
 # User gets gateway-user role but get it changed to user-pending again. Now he goes and click still valid pre used verification link. No new verification links sent to the user. He see message ‘Your account has already been successfully created. Please log in now.’ – PASS
 # Use the link in different browsers. User should not get multiple email verification links after verifying the email. - PASS
 # NOTE: not tested with campus credentials/CILogon as email verification is not part of the process.

> Gateway user received 400+ account verification emails !!!
> ----------------------------------------------------------
>
>                 Key: AIRAVATA-2552
>                 URL: https://issues.apache.org/jira/browse/AIRAVATA-2552
>             Project: Airavata
>          Issue Type: Bug
>          Components: Keycloak Authentication, PGA PHP Web Gateway
>    Affects Versions: 0.18
>         Environment: https://seagrid.org/
>            Reporter: Eroma
>            Assignee: Marcus Christie
>            Priority: Major
>             Fix For: 0.19
>
>
> A seagrid user has got over 400+ account verification emails. each of them has gone with different verification link. he has got them even after Sudhakar changes his role to gateway_user.
> He has created his account on saturday around 9.17 am and sudhakar has given his gateway_user after about 10 minutes. First cae reported and I looked in the email for about past 5 months and this is the first time.
> First email veirifaction to user - Sat, Oct 7, 2017 at 9:12 AM
> New user account creation to SGG & Sudhakar -   Sat, Oct 7, 2017 at 9:17 AM
> Second email verification -   Sat, Oct 7, 2017 at 9:21 AM
> Third email verification -   Sat, Oct 7, 2017 at 9:21 AM
> Forth email verification  - Sat, Oct 7, 2017 at 9:22 AM
> Privilege changed email -   Sat, Oct 7, 2017 at 9:29 AM
> He has got 7 more before he got prviilaege change emails
> Rest of the 430+ verification emails hase gone while the account was enabled
> user account: mikell_p
> He was using his university email.



--
This message was sent by Atlassian JIRA
(v7.6.3#76005)