Uploaded image for project: 'Jira Align'
  1. Jira Align
  2. JIRAALIGN-7186

SSO: If 'Disable Manual Sign In' is set to YES, the user is not redirected to the login page in some situations

XMLWordPrintable

    • 2
    • Severity 3 - Minor
    • No

      Issue Summary

      In case the options ‘Settings > Platform > Security > Disable Manual Sign In' is set to YES, and the customer is using SSO, in certain scenarios when the session expires, the user is not redirected to the login page, instead, when performing a 'Save', he will receive an 'Internal Error'.
      Below you can see the behavior on scenarios when the session expired/was invalidated, and the settings are YES/NO:

      Disable Manual Sign In Video
      NO sso_manual_sign_in_off.mov
      YES sso_manual_sign_in_on.mov

      Steps to Reproduce

      One way to reproduce this consistently, but not the only one is

      1. Have an SSO configured on JA
      2. Have the settings Disable Manual Sign In' is set to YES
      3. Log into JA
      4. Go to the Theme grid
      5. Open one Theme (or any other work item)
      6. Duplicate the tab
      7. On the second tab, hit User > Log Out
      8. On the first tab, hit save on the Theme
      9. See the red banner

      Expected Results

      If the session is no longer valid, the user will be redirected to the login screen

      Actual Results

      The user receives a red banner and continues to be on Jira Align

      Workaround

      Currently there is no known workaround for this behavior. A workaround will be added here when available

        1. sso_manual_sign_in_off.mov
          14.92 MB
        2. sso_manual_sign_in_on.mov
          21.19 MB

              csmith1@atlassian.com Cap Smith
              a8cff3407f0b Diego Larangeira
              Votes:
              5 Vote for this issue
              Watchers:
              8 Start watching this issue

                Created:
                Updated: