This issue has been created
There is 1 update.
 
 
JIRA Components / cid:jira-generated-image-avatar-4c656800-69c8-42cf-b7d1-9564d799ce57 JIRA-87 Open

Save Authenticator configuration in Administration don't work with Tomcat

 
View issue   ·   Add comment
 

Issue created

 
cid:jira-generated-image-avatar-b2bab663-a4eb-4b67-83b7-98192da9a021 Josué Tille created this issue on 14/Aug/25 12:18
 
Summary: Save Authenticator configuration in Admin don't work with Tomcat
Issue Type: cid:jira-generated-image-avatar-4c656800-69c8-42cf-b7d1-9564d799ce57 Bug
Affects Versions: 11.0.0
Assignee: Unassigned
Components: Configuration
Created: 14/Aug/25 12:18
Priority: cid:jira-generated-image-static-major-095570fd-23e6-4820-8741-02469f2243b2 Major
Reporter: Josué Tille
Description:

Step to reproduce:

  • Use a XWiki 16.10.8 with Tomcat
  • Add a new entry in the configuration with Basic auth
  • Set the credential user/password
  • Save

Expected

The configuration is saved

Currently

The configuration is not saved and the BasicAuthConfigDisplayer return the error "Invalid CSRF token".

After investigation it seem doing $!request.form_token return nothing with tomcat when the form is send with a multipart/form-data; boundary

 

 
 

1 update

 
cid:jira-generated-image-avatar-b2bab663-a4eb-4b67-83b7-98192da9a021 Changes by Josué Tille on 14/Aug/25 12:18
 
Summary: Save Authenticator configuration in Admin Administration don't work with Tomcat