[webapp-container] Remember SAML providers in URL patterns

Bug #1452142 reported by Alberto Mardegan
14
This bug affects 2 people
Affects Status Importance Assigned to Milestone
webapps-sprint
Fix Released
Medium
Alexandre Abreu
webbrowser-app
Invalid
Medium
Unassigned
webbrowser-app (Ubuntu)
Fix Released
Medium
Alexandre Abreu

Bug Description

The implementation of the fix for bug 1451432 adds the SAML provider site to the list of the allowed URL patterns, so that the SAML provider's website will be opened within the webapp-container itself and not being delegated to the browser.

This is working fine, but we recently noticed that sometimes Google redirects the user to the SAML provider's website without passing the "SAMLRequest" parameter in the URL query; when that happens, the webapp container will delegate the opening of that page to the browser, since the URL is not in the allowed URL patterns.

The proposed solution is for the webapp-container to store the SAML provider's URL somewhere in a config file, and always append the contents of that file to the list of the allowed URL patterns.

Related branches

David Barth (dbarth)
Changed in webapps-sprint:
milestone: none → sprint-9
Revision history for this message
Alexandre Abreu (abreu-alexandre) wrote :
David Barth (dbarth)
Changed in webapps-sprint:
importance: Undecided → Medium
Changed in webbrowser-app:
importance: Undecided → Medium
Changed in webapps-sprint:
assignee: nobody → Alberto Mardegan (mardy)
Changed in webbrowser-app:
assignee: nobody → Alberto Mardegan (mardy)
David Barth (dbarth)
Changed in webapps-sprint:
milestone: sprint-9 → sprint-10
status: New → In Progress
Changed in webbrowser-app:
status: New → In Progress
Changed in webapps-sprint:
assignee: Alberto Mardegan (mardy) → Alexandre Abreu (abreu-alexandre)
Changed in webbrowser-app:
assignee: Alberto Mardegan (mardy) → Alexandre Abreu (abreu-alexandre)
Olivier Tilloy (osomon)
Changed in webbrowser-app (Ubuntu):
status: New → In Progress
importance: Undecided → Medium
assignee: nobody → Alexandre Abreu (abreu-alexandre)
Changed in webbrowser-app:
assignee: Alexandre Abreu (abreu-alexandre) → nobody
status: In Progress → Invalid
Revision history for this message
Launchpad Janitor (janitor) wrote :

This bug was fixed in the package webbrowser-app - 0.23+15.10.20150610-0ubuntu1

---------------
webbrowser-app (0.23+15.10.20150610-0ubuntu1) wily; urgency=medium

  [ Alexandre Abreu ]
  * Ensure SAML requests are followed even if the app is interrupted and
    restarted. (LP: #1451432, #1452142)
  * Handle desktop download by forwarding to the default browser (LP:
    #1309657)

  [ Olivier Tilloy ]
  * Update translation template.
  * Updated bzr ignore rules.

 -- CI Train Bot <email address hidden> Wed, 10 Jun 2015 12:36:43 +0000

Changed in webbrowser-app (Ubuntu):
status: In Progress → Fix Released
David Barth (dbarth)
Changed in webapps-sprint:
status: In Progress → Fix Released
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Duplicates of this bug

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.