[JIRA] [core] (JENKINS-22949) If a QueueItemAuthenticator is configured but returns null, use ANONYMOUS not SYSTEM

2016-05-17 Thread stephenconno...@java.net (JIRA)
Title: Message Title
 
 
 
 
 
 
 
 
 
 
  
 
 stephenconnolly updated an issue 
 
 
 
 
 
 
 
 
 
 

 
 
 
 
 
 
 
 Jenkins /  JENKINS-22949 
 
 
 
  If a QueueItemAuthenticator is configured but returns null, use ANONYMOUS not SYSTEM  
 
 
 
 
 
 
 
 
 
 
Since there is some confusion from people as to why this issue is now redundant. In Authorize Project Plugin 1.2.0 

JENKINS-30574
 implemented a feature that makes this request irrelevant as configuration can now enable this behaviour for instances that wish to opt-in, thereby removing the risk that would be inherent in implementing 

JENKINS-22949
 
Here is how to configure 

JENKINS-30574
 to behave in this way: 
 
 
 
 
 
 
 
 
 
 

Change By:
 
 stephenconnolly 
 
 
 

Attachment:
 
 jenkins-22949-config.png 
 
 
 
 
 
 
 
 
 
 
 
 

 
 Add Comment 
 
 
 
 
 
 
 
 
 
 

 
 
 
 
 
 
 
 
 
 

 This message was sent by Atlassian JIRA (v6.4.2#64017-sha1:e244265) 
 
 
 
 
  
 
 
 
 
 
 
 
 
   





-- 
You received this message because you 

[JIRA] [core] (JENKINS-22949) If a QueueItemAuthenticator is configured but returns null, use ANONYMOUS not SYSTEM

2016-05-17 Thread stephenconno...@java.net (JIRA)
Title: Message Title
 
 
 
 
 
 
 
 
 
 
  
 
 stephenconnolly closed an issue as Won't Do 
 
 
 
 
 
 
 
 
 
 

 
 
 
 
 
 
 
 Jenkins /  JENKINS-22949 
 
 
 
  If a QueueItemAuthenticator is configured but returns null, use ANONYMOUS not SYSTEM  
 
 
 
 
 
 
 
 
 

Change By:
 
 stephenconnolly 
 
 
 

Status:
 
 Open Closed 
 
 
 

Resolution:
 
 Won't Do 
 
 
 
 
 
 
 
 
 
 
 
 

 
 Add Comment 
 
 
 
 
 
 
 
 
 
 

 
 
 
 
 
 
 
 
 
 

 This message was sent by Atlassian JIRA (v6.4.2#64017-sha1:e244265) 
 
 
 
 
  
 
 
 
 
 
 
 
 
   





-- 
You received this message because you are subscribed to the Google Groups "Jenkins Issues" group.
To unsubscribe from this group and stop receiving emails from it, send an email to jenkinsci-issues+unsubscr...@googlegroups.com.
For more options, visit https://groups.google.com/d/optout.


[JIRA] [core] (JENKINS-22949) If a QueueItemAuthenticator is configured but returns null, use ANONYMOUS not SYSTEM

2016-03-20 Thread db...@cloudbees.com (JIRA)
Title: Message Title
 
 
 
 
 
 
 
 
 
 
  
 
 Daniel Beck commented on  JENKINS-22949 
 
 
 
 
 
 
 
 
 
 

 
 
 
 
 
 
 
  Re: If a QueueItemAuthenticator is configured but returns null, use ANONYMOUS not SYSTEM  
 
 
 
 
 
 
 
 
 
 
Kohsuke Kawaguchi Please use 2.0-rejected so we can keep track of things that were nominated and are no longer being considered. 
 
 
 
 
 
 
 
 
 
 
 
 

 
 Add Comment 
 
 
 
 
 
 
 
 
 
 

 
 
 
 
 
 
 
 
 
 

 This message was sent by Atlassian JIRA (v6.4.2#64017-sha1:e244265) 
 
 
 
 
  
 
 
 
 
 
 
 
 
   





-- 
You received this message because you are subscribed to the Google Groups "Jenkins Issues" group.
To unsubscribe from this group and stop receiving emails from it, send an email to jenkinsci-issues+unsubscr...@googlegroups.com.
For more options, visit https://groups.google.com/d/optout.


[JIRA] [core] (JENKINS-22949) If a QueueItemAuthenticator is configured but returns null, use ANONYMOUS not SYSTEM

2016-03-20 Thread db...@cloudbees.com (JIRA)
Title: Message Title
 
 
 
 
 
 
 
 
 
 
  
 
 Daniel Beck updated an issue 
 
 
 
 
 
 
 
 
 
 

 
 
 
 
 
 
 
 Jenkins /  JENKINS-22949 
 
 
 
  If a QueueItemAuthenticator is configured but returns null, use ANONYMOUS not SYSTEM  
 
 
 
 
 
 
 
 
 

Change By:
 
 Daniel Beck 
 
 
 

Labels:
 
 2.0-rejected permissions security 
 
 
 
 
 
 
 
 
 
 
 
 

 
 Add Comment 
 
 
 
 
 
 
 
 
 
 

 
 
 
 
 
 
 
 
 
 

 This message was sent by Atlassian JIRA (v6.4.2#64017-sha1:e244265) 
 
 
 
 
  
 
 
 
 
 
 
 
 
   





-- 
You received this message because you are subscribed to the Google Groups "Jenkins Issues" group.
To unsubscribe from this group and stop receiving emails from it, send an email to jenkinsci-issues+unsubscr...@googlegroups.com.
For more options, visit https://groups.google.com/d/optout.


[JIRA] [core] (JENKINS-22949) If a QueueItemAuthenticator is configured but returns null, use ANONYMOUS not SYSTEM

2016-03-14 Thread k...@kohsuke.org (JIRA)
Title: Message Title
 
 
 
 
 
 
 
 
 
 
  
 
 Kohsuke Kawaguchi updated an issue 
 
 
 
 
 
 
 
 
 
 

 
 
 
 
 
 
 
 Jenkins /  JENKINS-22949 
 
 
 
  If a QueueItemAuthenticator is configured but returns null, use ANONYMOUS not SYSTEM  
 
 
 
 
 
 
 
 
 

Change By:
 
 Kohsuke Kawaguchi 
 
 
 

Labels:
 
 2.0  permissions security 
 
 
 
 
 
 
 
 
 
 
 
 

 
 Add Comment 
 
 
 
 
 
 
 
 
 
 

 
 
 
 
 
 
 
 
 
 

 This message was sent by Atlassian JIRA (v6.4.2#64017-sha1:e244265) 
 
 
 
 
  
 
 
 
 
 
 
 
 
   





-- 
You received this message because you are subscribed to the Google Groups "Jenkins Issues" group.
To unsubscribe from this group and stop receiving emails from it, send an email to jenkinsci-issues+unsubscr...@googlegroups.com.
For more options, visit https://groups.google.com/d/optout.


[JIRA] [core] (JENKINS-22949) If a QueueItemAuthenticator is configured but returns null, use ANONYMOUS not SYSTEM

2016-02-25 Thread jgl...@cloudbees.com (JIRA)
Title: Message Title
 
 
 
 
 
 
 
 
 
 
  
 
 Jesse Glick commented on  JENKINS-22949 
 
 
 
 
 
 
 
 
 
 

 
 
 
 
 
 
 
  Re: If a QueueItemAuthenticator is configured but returns null, use ANONYMOUS not SYSTEM  
 
 
 
 
 
 
 
 
 
 
Introducing a new identity is not really an option, unless every AuthorizationStrategy’s config UI were adapted to offer this as an option. Much simpler to default to anonymous. 
 
 
 
 
 
 
 
 
 
 
 
 

 
 Add Comment 
 
 
 
 
 
 
 
 
 
 

 
 
 
 
 
 
 
 
 
 

 This message was sent by Atlassian JIRA (v6.4.2#64017-sha1:e244265) 
 
 
 
 
  
 
 
 
 
 
 
 
 
   





-- 
You received this message because you are subscribed to the Google Groups "Jenkins Issues" group.
To unsubscribe from this group and stop receiving emails from it, send an email to jenkinsci-issues+unsubscr...@googlegroups.com.
For more options, visit https://groups.google.com/d/optout.


[JIRA] [core] (JENKINS-22949) If a QueueItemAuthenticator is configured but returns null, use ANONYMOUS not SYSTEM

2016-01-14 Thread stephenconno...@java.net (JIRA)
Title: Message Title
 
 
 
 
 
 
 
 
 
 
  
 
 stephenconnolly commented on  JENKINS-22949 
 
 
 
 
 
 
 
 
 
 

 
 
 
 
 
 
 
  Re: If a QueueItemAuthenticator is configured but returns null, use ANONYMOUS not SYSTEM  
 
 
 
 
 
 
 
 
 
 
I think it would make more sense to introduce a specific system "identity" for builds rather than pushing down to ANONYMOUS. If somebody wants all builds to run by default as ANONYMOUS then use JENKINS-30574 to set that default... falling off the end of the list of authenticators (empty or not) should give you something like ACL.BUILDS instead of ACL.SYSTEM IMHO 
 
 
 
 
 
 
 
 
 
 
 
 

 
 Add Comment 
 
 
 
 
 
 
 
 
 
 

 
 
 
 
 
 
 
 
 
 

 This message was sent by Atlassian JIRA (v6.4.2#64017-sha1:e244265) 
 
 
 
 
  
 
 
 
 
 
 
 
 
   





-- 
You received this message because you are subscribed to the Google Groups "Jenkins Issues" group.
To unsubscribe from this group and stop receiving emails from it, send an email to jenkinsci-issues+unsubscr...@googlegroups.com.
For more options, visit https://groups.google.com/d/optout.


[JIRA] [core] (JENKINS-22949) If a QueueItemAuthenticator is configured but returns null, use ANONYMOUS not SYSTEM

2015-10-05 Thread jgl...@cloudbees.com (JIRA)
Title: Message Title
 
 
 
 
 
 
 
 
 
 
  
 
 Jesse Glick updated an issue 
 
 
 
 
 
 
 
 
 
 

 
 
 
 
 
 
 
 Jenkins /  JENKINS-22949 
 
 
 
  If a QueueItemAuthenticator is configured but returns null, use ANONYMOUS not SYSTEM  
 
 
 
 
 
 
 
 
 

Change By:
 
 Jesse Glick 
 
 
 

Labels:
 
 2.0 permissions security 
 
 
 
 
 
 
 
 
 
 
 
 

 
 Add Comment 
 
 
 
 
 
 
 
 
 
 

 
 
 
 
 
 
 
 
 
 

 This message was sent by Atlassian JIRA (v6.4.2#64017-sha1:e244265) 
 
 
 
 
  
 
 
 
 
 
 
 
 
   





-- 
You received this message because you are subscribed to the Google Groups "Jenkins Issues" group.
To unsubscribe from this group and stop receiving emails from it, send an email to jenkinsci-issues+unsubscr...@googlegroups.com.
For more options, visit https://groups.google.com/d/optout.


[JIRA] [core] (JENKINS-22949) If a QueueItemAuthenticator is configured but returns null, use ANONYMOUS not SYSTEM

2015-09-21 Thread o.v.nenas...@gmail.com (JIRA)
Title: Message Title
 
 
 
 
 
 
 
 
 
 
  
 
 Oleg Nenashev updated an issue 
 
 
 
 
 
 
 
 
 
 

 
 
 
 
 
 
 
 Jenkins /  JENKINS-22949 
 
 
 
  If a QueueItemAuthenticator is configured but returns null, use ANONYMOUS not SYSTEM  
 
 
 
 
 
 
 
 
 

Change By:
 
 Oleg Nenashev 
 
 
 

Comment:
 
 Or Jenkins 2.0 ... 
 
 
 
 
 
 
 
 
 
 
 
 

 
 Add Comment 
 
 
 
 
 
 
 
 
 
 

 
 
 
 
 
 
 
 
 
 

 This message was sent by Atlassian JIRA (v6.4.2#64017-sha1:e244265) 
 
 
 
 
  
 
 
 
 
 
 
 
 
   





-- 
You received this message because you are subscribed to the Google Groups "Jenkins Issues" group.
To unsubscribe from this group and stop receiving emails from it, send an email to jenkinsci-issues+unsubscr...@googlegroups.com.
For more options, visit https://groups.google.com/d/optout.


[JIRA] [core] (JENKINS-22949) If a QueueItemAuthenticator is configured but returns null, use ANONYMOUS not SYSTEM

2015-09-09 Thread o.v.nenas...@gmail.com (JIRA)
Title: Message Title
 
 
 
 
 
 
 
 
 
 
  
 
 Oleg Nenashev commented on  JENKINS-22949 
 
 
 
 
 
 
 
 
 
 

 
 
 
 
 
 
 
  Re: If a QueueItemAuthenticator is configured but returns null, use ANONYMOUS not SYSTEM  
 
 
 
 
 
 
 
 
 
 
Or Jenkins 2.0 ... 
 
 
 
 
 
 
 
 
 
 
 
 

 
 Add Comment 
 
 
 
 
 
 
 
 
 
 

 
 
 
 
 
 
 
 
 
 

 This message was sent by Atlassian JIRA (v6.4.2#64017-sha1:e244265) 
 
 
 
 
  
 
 
 
 
 
 
 
 
   





-- 
You received this message because you are subscribed to the Google Groups "Jenkins Issues" group.
To unsubscribe from this group and stop receiving emails from it, send an email to jenkinsci-issues+unsubscr...@googlegroups.com.
For more options, visit https://groups.google.com/d/optout.


[JIRA] [core] (JENKINS-22949) If a QueueItemAuthenticator is configured but returns null, use ANONYMOUS not SYSTEM

2014-05-27 Thread jgl...@cloudbees.com (JIRA)














































Jesse Glick
 commented on  JENKINS-22949


If a QueueItemAuthenticator is configured but returns null, use ANONYMOUS not SYSTEM















The only possible regressions are to people already using the Authorize Project plugin. Currently there are 155 installations, presumably some of them not actually having configured it yet.



























This message is automatically generated by JIRA.
If you think it was sent incorrectly, please contact your JIRA administrators.
For more information on JIRA, see: http://www.atlassian.com/software/jira







-- 
You received this message because you are subscribed to the Google Groups Jenkins Issues group.
To unsubscribe from this group and stop receiving emails from it, send an email to jenkinsci-issues+unsubscr...@googlegroups.com.
For more options, visit https://groups.google.com/d/optout.


[JIRA] [core] (JENKINS-22949) If a QueueItemAuthenticator is configured but returns null, use ANONYMOUS not SYSTEM

2014-05-27 Thread o.v.nenas...@gmail.com (JIRA)














































Oleg Nenashev
 commented on  JENKINS-22949


If a QueueItemAuthenticator is configured but returns null, use ANONYMOUS not SYSTEM















We use an internal plugin on "eval" servers with 1.532.x+, other users may use such plugins as well.
Actually, I'd definitely use the "Anonymous" user as a default fallback, but I don't think that the regression injection is a good approach in general.



























This message is automatically generated by JIRA.
If you think it was sent incorrectly, please contact your JIRA administrators.
For more information on JIRA, see: http://www.atlassian.com/software/jira







-- 
You received this message because you are subscribed to the Google Groups Jenkins Issues group.
To unsubscribe from this group and stop receiving emails from it, send an email to jenkinsci-issues+unsubscr...@googlegroups.com.
For more options, visit https://groups.google.com/d/optout.


[JIRA] [core] (JENKINS-22949) If a QueueItemAuthenticator is configured but returns null, use ANONYMOUS not SYSTEM

2014-05-27 Thread jgl...@cloudbees.com (JIRA)














































Jesse Glick
 commented on  JENKINS-22949


If a QueueItemAuthenticator is configured but returns null, use ANONYMOUS not SYSTEM















I would consider a system property or similar to provide a temporary workaround to the probably small number of people already using the plugin who really need the current (insecure) behavior until something else if fixed or reconfigured. But I do not think it should be a UI option since it does not make sense going forward.



























This message is automatically generated by JIRA.
If you think it was sent incorrectly, please contact your JIRA administrators.
For more information on JIRA, see: http://www.atlassian.com/software/jira







-- 
You received this message because you are subscribed to the Google Groups Jenkins Issues group.
To unsubscribe from this group and stop receiving emails from it, send an email to jenkinsci-issues+unsubscr...@googlegroups.com.
For more options, visit https://groups.google.com/d/optout.


[JIRA] [core] (JENKINS-22949) If a QueueItemAuthenticator is configured but returns null, use ANONYMOUS not SYSTEM

2014-05-27 Thread o.v.nenas...@gmail.com (JIRA)














































Oleg Nenashev
 commented on  JENKINS-22949


If a QueueItemAuthenticator is configured but returns null, use ANONYMOUS not SYSTEM















Yes, a system property would be a convenient solution.



























This message is automatically generated by JIRA.
If you think it was sent incorrectly, please contact your JIRA administrators.
For more information on JIRA, see: http://www.atlassian.com/software/jira







-- 
You received this message because you are subscribed to the Google Groups Jenkins Issues group.
To unsubscribe from this group and stop receiving emails from it, send an email to jenkinsci-issues+unsubscr...@googlegroups.com.
For more options, visit https://groups.google.com/d/optout.


[JIRA] [core] (JENKINS-22949) If a QueueItemAuthenticator is configured but returns null, use ANONYMOUS not SYSTEM

2014-05-26 Thread o.v.nenas...@gmail.com (JIRA)














































Oleg Nenashev
 commented on  JENKINS-22949


If a QueueItemAuthenticator is configured but returns null, use ANONYMOUS not SYSTEM















I suppose that the default user should be configurable from the global security page.
SYSTEM should be default (with scary red/yellow warning, of course) 
Otherwise, it's hard to predict all possible regressions



























This message is automatically generated by JIRA.
If you think it was sent incorrectly, please contact your JIRA administrators.
For more information on JIRA, see: http://www.atlassian.com/software/jira







-- 
You received this message because you are subscribed to the Google Groups Jenkins Issues group.
To unsubscribe from this group and stop receiving emails from it, send an email to jenkinsci-issues+unsubscr...@googlegroups.com.
For more options, visit https://groups.google.com/d/optout.


[JIRA] [core] (JENKINS-22949) If a QueueItemAuthenticator is configured but returns null, use ANONYMOUS not SYSTEM

2014-05-26 Thread o.v.nenas...@gmail.com (JIRA)












































 
Oleg Nenashev
 edited a comment on  JENKINS-22949


If a QueueItemAuthenticator is configured but returns null, use ANONYMOUS not SYSTEM
















I think that the default user should be configurable from the global security page.
SYSTEM should be default (with scary red/yellow warning, of course) 
Otherwise, it's hard to predict all possible regressions



























This message is automatically generated by JIRA.
If you think it was sent incorrectly, please contact your JIRA administrators.
For more information on JIRA, see: http://www.atlassian.com/software/jira







-- 
You received this message because you are subscribed to the Google Groups Jenkins Issues group.
To unsubscribe from this group and stop receiving emails from it, send an email to jenkinsci-issues+unsubscr...@googlegroups.com.
For more options, visit https://groups.google.com/d/optout.