Bug 55164 - Feature-Request: Deactivate Cookie-Banner at SAML-Login
Feature-Request: Deactivate Cookie-Banner at SAML-Login
Status: CLOSED FIXED
Product: UCS
Classification: Unclassified
Component: SAML
UCS 5.0
amd64 Linux
: P5 minor (vote)
: UCS 5.0-4-errata
Assigned To: Dirk Wiesenthal
Julia Bremer
:
: 56571 (view as bug list)
Depends on:
Blocks: 56571
  Show dependency treegraph
 
Reported: 2022-09-02 12:18 CEST by Robert Heyer
Modified: 2023-09-13 10:12 CEST (History)
5 users (show)

See Also:
What kind of report is it?: Feature Request
What type of bug is this?: ---
Who will be affected by this bug?: ---
How will those affected feel about the bug?: ---
User Pain:
Enterprise Customer affected?: Yes
School Customer affected?:
ISV affected?: Yes
Waiting Support:
Flags outvoted (downgraded) after PO Review:
Ticket number:
Bug group (optional):
Max CVSS v3 score:


Attachments
cookie.gif (603.96 KB, image/gif)
2022-09-02 12:18 CEST, Robert Heyer
Details

Note You need to log in before you can comment on or make changes to this bug.
Description Robert Heyer univentionstaff 2022-09-02 12:18:27 CEST
Created attachment 10984 [details]
cookie.gif

The customer using our standard UCRV umc/cookie-banner/*. Since UCS 5 the Cookie message appears twice, once when visiting the portal and then again during SSO login (see attachment cookie.gif). According to DEV there is no easy way to change that bevavior without deep intervention in the code. Best way in my opinion is create a UCRV für SAML-SSO to disable cookie message by SSO login.
Comment 2 Florian Best univentionstaff 2022-09-05 10:35:01 CEST
We should make the cookie domain configurable to $domainname, so that ucs-sso.$domainname and $host.$domainname have the same cookie and the banner is only displayed once.
Comment 6 Dirk Wiesenthal univentionstaff 2023-09-11 18:23:32 CEST
univention-web.yaml
a17f47cbb59a | Bug #55164: Wording
cf3da1bf189c | Bug #55164: YAML

univention-web (4.0.4-4)
1c284c81181e | Bug #55164: Show cookie banner only if configured for current domain

univention-portal.yaml
a17f47cbb59a | Bug #55164: Wording
cf3da1bf189c | Bug #55164: YAML

univention-portal (4.0.14-7)
f414ac690923 | Bug #55164: Show cookie banner only if configured for current domain

univention-management-console.yaml
a17f47cbb59a | Bug #55164: Wording
cf3da1bf189c | Bug #55164: YAML

univention-management-console (12.0.31-13)
a17f47cbb59a | Bug #55164: Wording
51d559b66b4b | Bug #55164: Document UCRV umc/cookie-banner/domains
93715635b091 | Bug #55164: Allow the cookie banner to be used for certain domains
Comment 7 Julia Bremer univentionstaff 2023-09-12 13:04:56 CEST
Jenkins: OK
Package update: OK
YAML: OK
ucr set umc/cookie-banner/domains=ucs.test => accepting the cookies one time is enough for both ucs-sso.ucs.test and master.ucs.test: OK
ucr set umc/cookie-banner/domains=master.ucs.test => cookie banner is disabled for ucs-sso: OK
ucr set umc/cookie-banner/domains=master.ucs.test,ucs-sso.ucs.test => cookie banner is shown on both master and ucs-sso, both need to be accepted: OK

Verified
Comment 9 Florian Best univentionstaff 2023-09-13 10:12:10 CEST
Cherry-pick to UCS 5.0-5:

univention-web (4.0.4-4)
bfcba3882791 | Bug #55164: Show cookie banner only if configured for current domain

univention-portal (4.0.14-7)
a3fb4811fb90 | Bug #55164: Show cookie banner only if configured for current domain

univention-management-console (12.0.31-13)
f0d01bb5f134 | Bug #55164: Wording
c3504d7b3ca2 | Bug #55164: Document UCRV umc/cookie-banner/domains
0ea7c929c703 | Bug #55164: Allow the cookie banner to be used for certain domains
Comment 10 Florian Best univentionstaff 2023-09-13 10:12:30 CEST
*** Bug 56571 has been marked as a duplicate of this bug. ***