You are viewing a plain text version of this content. The canonical link for it is here.
Posted to dev@geronimo.apache.org by "Tina Li (Created) (JIRA)" <ji...@apache.org> on 2011/12/02 02:20:39 UTC

[jira] [Created] (GERONIMO-6223) problem of "XSSXSRFFilter blocked HttpServletRequest due to invalid FORM content" always happened when install WAB sample

problem of "XSSXSRFFilter blocked HttpServletRequest due to invalid FORM content" always happened when install WAB sample
-------------------------------------------------------------------------------------------------------------------------

                 Key: GERONIMO-6223
                 URL: https://issues.apache.org/jira/browse/GERONIMO-6223
             Project: Geronimo
          Issue Type: Bug
      Security Level: public (Regular issues)
          Components: osgi-bundles
    Affects Versions: 3.0
         Environment: s390x s390x s390x GNU/Linux
IBM J9 VM (build 2.4, JRE 1.6.0 IBM J9 2.4 Linux s390x-64 jvmxz6460sr9-20110203_74623 (JIT enabled, AOT enabled)
Mozilla/5.0 (X11; U; Linux x86_64; en-US; rv:1.9.2.24) Gecko/20111104 Red Hat/3.6.24-3.el6_1 Firefox/3.6.24
            Reporter: Tina Li
            Priority: Trivial


1.Install geronimo server and start server successfully
2.Install and start a WAB sample using osgi porlet
3.Click the checkbox of "WAB"
url can't be accessed normally but displayed message on firefox:

HTTP Status 400 - XSSXSRFFilter blocked HttpServletRequest due to invalid FORM content.

type Status report

message XSSXSRFFilter blocked HttpServletRequest due to invalid FORM content.

description The request sent by the client was syntactically incorrect (XSSXSRFFilter blocked HttpServletRequest due to invalid FORM content.).
server.log file:
2011-11-29 05:31:14,672 ERROR [XSSXSRFFilter] XSSXSRFFilter blocked HttpServletRequest due to invalid FORM content.

4.After refresh this page, no error happened and url can be accessed successfully.

--
This message is automatically generated by JIRA.
If you think it was sent incorrectly, please contact your JIRA administrators: https://issues.apache.org/jira/secure/ContactAdministrators!default.jspa
For more information on JIRA, see: http://www.atlassian.com/software/jira

        

[jira] [Closed] (GERONIMO-6223) problem of "XSSXSRFFilter blocked HttpServletRequest due to invalid FORM content" always happened when install WAB sample

Posted by "Tina Li (JIRA)" <ji...@apache.org>.
     [ https://issues.apache.org/jira/browse/GERONIMO-6223?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]

Tina Li closed GERONIMO-6223.
-----------------------------

    Resolution: Fixed
    
> problem of "XSSXSRFFilter blocked HttpServletRequest due to invalid FORM content" always happened when install WAB sample
> -------------------------------------------------------------------------------------------------------------------------
>
>                 Key: GERONIMO-6223
>                 URL: https://issues.apache.org/jira/browse/GERONIMO-6223
>             Project: Geronimo
>          Issue Type: Bug
>      Security Level: public(Regular issues) 
>          Components: osgi-bundles
>    Affects Versions: 3.0
>         Environment: s390x s390x s390x GNU/Linux
> IBM J9 VM (build 2.4, JRE 1.6.0 IBM J9 2.4 Linux s390x-64 jvmxz6460sr9-20110203_74623 (JIT enabled, AOT enabled)
> Mozilla/5.0 (X11; U; Linux x86_64; en-US; rv:1.9.2.24) Gecko/20111104 Red Hat/3.6.24-3.el6_1 Firefox/3.6.24
>            Reporter: Tina Li
>            Priority: Trivial
>
> 1.Install geronimo server and start server successfully
> 2.Install and start a WAB sample using osgi porlet
> 3.Click the checkbox of "WAB"
> url can't be accessed normally but displayed message on firefox:
> HTTP Status 400 - XSSXSRFFilter blocked HttpServletRequest due to invalid FORM content.
> type Status report
> message XSSXSRFFilter blocked HttpServletRequest due to invalid FORM content.
> description The request sent by the client was syntactically incorrect (XSSXSRFFilter blocked HttpServletRequest due to invalid FORM content.).
> server.log file:
> 2011-11-29 05:31:14,672 ERROR [XSSXSRFFilter] XSSXSRFFilter blocked HttpServletRequest due to invalid FORM content.
> 4.After refresh this page, no error happened and url can be accessed successfully.

--
This message is automatically generated by JIRA.
If you think it was sent incorrectly, please contact your JIRA administrators: https://issues.apache.org/jira/secure/ContactAdministrators!default.jspa
For more information on JIRA, see: http://www.atlassian.com/software/jira

        

[jira] [Commented] (GERONIMO-6223) problem of "XSSXSRFFilter blocked HttpServletRequest due to invalid FORM content" always happened when install WAB sample

Posted by "Tina Li (JIRA)" <ji...@apache.org>.
    [ https://issues.apache.org/jira/browse/GERONIMO-6223?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=13272994#comment-13272994 ] 

Tina Li commented on GERONIMO-6223:
-----------------------------------

Test again and this problem can't be reproduced on the latest build.
                
> problem of "XSSXSRFFilter blocked HttpServletRequest due to invalid FORM content" always happened when install WAB sample
> -------------------------------------------------------------------------------------------------------------------------
>
>                 Key: GERONIMO-6223
>                 URL: https://issues.apache.org/jira/browse/GERONIMO-6223
>             Project: Geronimo
>          Issue Type: Bug
>      Security Level: public(Regular issues) 
>          Components: osgi-bundles
>    Affects Versions: 3.0
>         Environment: s390x s390x s390x GNU/Linux
> IBM J9 VM (build 2.4, JRE 1.6.0 IBM J9 2.4 Linux s390x-64 jvmxz6460sr9-20110203_74623 (JIT enabled, AOT enabled)
> Mozilla/5.0 (X11; U; Linux x86_64; en-US; rv:1.9.2.24) Gecko/20111104 Red Hat/3.6.24-3.el6_1 Firefox/3.6.24
>            Reporter: Tina Li
>            Priority: Trivial
>
> 1.Install geronimo server and start server successfully
> 2.Install and start a WAB sample using osgi porlet
> 3.Click the checkbox of "WAB"
> url can't be accessed normally but displayed message on firefox:
> HTTP Status 400 - XSSXSRFFilter blocked HttpServletRequest due to invalid FORM content.
> type Status report
> message XSSXSRFFilter blocked HttpServletRequest due to invalid FORM content.
> description The request sent by the client was syntactically incorrect (XSSXSRFFilter blocked HttpServletRequest due to invalid FORM content.).
> server.log file:
> 2011-11-29 05:31:14,672 ERROR [XSSXSRFFilter] XSSXSRFFilter blocked HttpServletRequest due to invalid FORM content.
> 4.After refresh this page, no error happened and url can be accessed successfully.

--
This message is automatically generated by JIRA.
If you think it was sent incorrectly, please contact your JIRA administrators: https://issues.apache.org/jira/secure/ContactAdministrators!default.jspa
For more information on JIRA, see: http://www.atlassian.com/software/jira

        

[jira] [Commented] (GERONIMO-6223) problem of "XSSXSRFFilter blocked HttpServletRequest due to invalid FORM content" always happened when install WAB sample

Posted by "Forrest Xia (JIRA)" <ji...@apache.org>.
    [ https://issues.apache.org/jira/browse/GERONIMO-6223?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=13270288#comment-13270288 ] 

Forrest Xia commented on GERONIMO-6223:
---------------------------------------

Is it still valid? if yes, please attach the wab sample used for testing here. thanks!
                
> problem of "XSSXSRFFilter blocked HttpServletRequest due to invalid FORM content" always happened when install WAB sample
> -------------------------------------------------------------------------------------------------------------------------
>
>                 Key: GERONIMO-6223
>                 URL: https://issues.apache.org/jira/browse/GERONIMO-6223
>             Project: Geronimo
>          Issue Type: Bug
>      Security Level: public(Regular issues) 
>          Components: osgi-bundles
>    Affects Versions: 3.0
>         Environment: s390x s390x s390x GNU/Linux
> IBM J9 VM (build 2.4, JRE 1.6.0 IBM J9 2.4 Linux s390x-64 jvmxz6460sr9-20110203_74623 (JIT enabled, AOT enabled)
> Mozilla/5.0 (X11; U; Linux x86_64; en-US; rv:1.9.2.24) Gecko/20111104 Red Hat/3.6.24-3.el6_1 Firefox/3.6.24
>            Reporter: Tina Li
>            Priority: Trivial
>
> 1.Install geronimo server and start server successfully
> 2.Install and start a WAB sample using osgi porlet
> 3.Click the checkbox of "WAB"
> url can't be accessed normally but displayed message on firefox:
> HTTP Status 400 - XSSXSRFFilter blocked HttpServletRequest due to invalid FORM content.
> type Status report
> message XSSXSRFFilter blocked HttpServletRequest due to invalid FORM content.
> description The request sent by the client was syntactically incorrect (XSSXSRFFilter blocked HttpServletRequest due to invalid FORM content.).
> server.log file:
> 2011-11-29 05:31:14,672 ERROR [XSSXSRFFilter] XSSXSRFFilter blocked HttpServletRequest due to invalid FORM content.
> 4.After refresh this page, no error happened and url can be accessed successfully.

--
This message is automatically generated by JIRA.
If you think it was sent incorrectly, please contact your JIRA administrators: https://issues.apache.org/jira/secure/ContactAdministrators!default.jspa
For more information on JIRA, see: http://www.atlassian.com/software/jira