Quantcast

[JIRA] (JENKINS-15415) Anonymous users can browse source code through coverage report

classic Classic list List threaded Threaded
5 messages Options
Reply | Threaded
Open this post in threaded view
|  
Report Content as Inappropriate
star

[JIRA] (JENKINS-15415) Anonymous users can browse source code through coverage report

JIRA noreply@jenkins-ci.org
Issue Type: Improvement Improvement
Assignee: stephenconnolly
Components: cobertura
Created: 05/Oct/12 8:19 AM
Description:

This is more a suggestion than a real issue.

When configuring Jenkins to matrix bases security, and giving anonymous users read access, they are able to browse source code throw the coverage report.
Other plugins does not permit this (workspace is not available as default for anonymous) and for example both Task Scanner and the Warnings plugin disable the last link down to the source when not logged in.

My use case is to let logged in users do almost anything (we give authenticated users admin rights) and users not logged in should be able to see jobs and job results - but the source code.

I wrote a mail to the dev-list and tried to discuss it there in more generelt.
Mail subject is: "Jenkins security setup and plugin responsibility"

Project: Jenkins
Priority: Major Major
Reporter: Bue Petersen
This message is automatically generated by JIRA.
If you think it was sent incorrectly, please contact your JIRA administrators.
For more information on JIRA, see: http://www.atlassian.com/software/jira
Reply | Threaded
Open this post in threaded view
|  
Report Content as Inappropriate
star

[JIRA] (JENKINS-15415) Anonymous users can browse source code through coverage report

JIRA noreply@jenkins-ci.org
Jes Struck commented on Improvement JENKINS-15415

I have created this pull reqeust to solve the issue https://github.com/jenkinsci/cobertura-plugin/pull/11

This message is automatically generated by JIRA.
If you think it was sent incorrectly, please contact your JIRA administrators.
For more information on JIRA, see: http://www.atlassian.com/software/jira
Reply | Threaded
Open this post in threaded view
|  
Report Content as Inappropriate
star

[JIRA] (JENKINS-15415) Anonymous users can browse source code through coverage report

JIRA noreply@jenkins-ci.org
In reply to this post by JIRA noreply@jenkins-ci.org
Change By: Jes Struck (03/Dec/12 1:15 PM)
Assignee: stephenconnolly Jes Struck
This message is automatically generated by JIRA.
If you think it was sent incorrectly, please contact your JIRA administrators.
For more information on JIRA, see: http://www.atlassian.com/software/jira
Reply | Threaded
Open this post in threaded view
|  
Report Content as Inappropriate
star

[JIRA] (JENKINS-15415) Anonymous users can browse source code through coverage report

JIRA noreply@jenkins-ci.org
In reply to this post by JIRA noreply@jenkins-ci.org
Jes Struck commented on Improvement JENKINS-15415

this has been solved in the tip of the repos, so we are just waiting for the next release of the plugin

This message is automatically generated by JIRA.
If you think it was sent incorrectly, please contact your JIRA administrators.
For more information on JIRA, see: http://www.atlassian.com/software/jira
Reply | Threaded
Open this post in threaded view
|  
Report Content as Inappropriate
star

[JIRA] (JENKINS-15415) Anonymous users can browse source code through coverage report

JIRA noreply@jenkins-ci.org
In reply to this post by JIRA noreply@jenkins-ci.org
sogabe resolved Improvement JENKINS-15415 as Fixed

fix in 1.8

Change By: sogabe (13/Dec/12 11:55 AM)
Status: Open Resolved
Resolution: Fixed
This message is automatically generated by JIRA.
If you think it was sent incorrectly, please contact your JIRA administrators.
For more information on JIRA, see: http://www.atlassian.com/software/jira
Loading...