cancel
Showing results for 
Search instead for 
Did you mean: 

CMIS Workbench with cookies enabled logs into Nuxeo every time

rg1_
Star Contributor
Star Contributor

Using CMIS Workbench 0.10.0 with various bindings and cookies enabled, I see a "Login Success" entry in the Nuxeo audit trail for every CMIS operation performed. I expected to see only one for the initial login. Thoughts?

5 REPLIES 5

Florent_Guillau
World-Class Innovator
World-Class Innovator

Could you open a JIRA ticket?

rg1_
Star Contributor
Star Contributor

See [NXP-12358][1].

Florent_Guillau
World-Class Innovator
World-Class Innovator

This is by design, the CMIS endpoint is not designated as stateful so does not generate a (needless) HTTP session which does not create a JSESSIONID cookie.

Edit: it's possible to make an endpoint use a stateful HTTP session and therefore a cookie through some config. To do that, the <authenticationPlugin> of the authenticators extension point defining the authentication for the given URL pattern must include <stateful>true</stateful>. This is done for instance here. Compare this with the standard binding for the browser binding endpoint here.

This seems to contradict the answer provided to [this question][1]. Please clarify.

Right. I updated the answer in the other question, and the above answer.

Getting started

Find what you came for

We want to make your experience in Hyland Connect as valuable as possible, so we put together some helpful links.