[ https://issues.apache.org/jira/browse/NIFI-1497?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=15154591#comment-15154591 ]
ASF subversion and git services commented on NIFI-1497: ------------------------------------------------------- Commit a8edab2e7955b175c5cbd2a3266fb51fa9712aee in nifi's branch refs/heads/master from [~mcgilman] [ https://git-wip-us.apache.org/repos/asf?p=nifi.git;h=a8edab2 ] NIFI-1497: - Introducing a one time use password service for use in query parameters when accessing UI extensions and downloading resources. - Using one time use tokens when accessing ui extensions and downloading resources. - Ensuring appropriate roles when accessing component details through the web context for custom UIs. - Addressing typo in class name. - Ensuring appropriate roles when accessing content through the content access. - Code clean up. - Refactoring some basic scripts for accessing JWT tokens so UI extensions can reuse common functionality. Signed-off-by: Bryan Bende <bbe...@apache.org> > Access token not included in all requests > ----------------------------------------- > > Key: NIFI-1497 > URL: https://issues.apache.org/jira/browse/NIFI-1497 > Project: Apache NiFi > Issue Type: Bug > Components: Core UI > Reporter: Matt Gilman > Assignee: Matt Gilman > Fix For: 0.5.1 > > Attachments: 0001-NIFI-1497.patch > > > Some requests do not have the access token included with them (specifically > custom UIs and view content). Without the access token, the request will fail > with Access Denied. -- This message was sent by Atlassian JIRA (v6.3.4#6332)