Project

General

Profile

Actions

Defect #4825

open

Several related bugs relating to registration, sign in and account preferences.

Added by oliver stieber almost 15 years ago. Updated over 13 years ago.

Status:
New
Priority:
High
Assignee:
-
Category:
Accounts / authentication
Target version:
-
Start date:
2010-02-13
Due date:
% Done:

0%

Estimated time:
Resolution:
Affected version:

Description

Hi, these bugs / feature requests which I consider to be more none crash bug like are fairly well related and all relate to the same activity which I was trying to perform so I've filed them as one bug report but you will probably want to split them up in to several and relate them together as desired.

went to register (http://www.redmine.org/account/register)and got the following message when I posted the form
'Invalid form authenticity token.'

Thought this may be because I was already registered so went to sign in (http://www.redmine.org/login)got the following message

'Invalid form authenticity token.'

Thought the problem may be because I was using Konqueror so tried firefox.

clicked on submit once, didn't appear to do anything just reloaded register page

clicked on submit again

This time got the message 'Login has already been taken'

So went to sign in, put in exactly the same Username and password I did in the register page and signed in ok.

updated my email address (I used my work email address when I first registered and no longer work there)

clicked on sae and firefox (Mozilla Firefox 3.5.7, Copyright (c) 1998 - 2009 mozilla.org) closed (no error message /crash message either in X or on the terminal `I started firefox fro mthe terminal`)

If the credentials entered in the register page the register page should
a: log you in and tell you that you already had an account.
b: update any information that is now different,
prohaps it should firstly ask you if you name has changed reciently if the firstname and lastname no longer match.
and ask you if you may have changed your email address latley too if the email address doesn't match, if the first name and last name matched the existing registration it may be an idea to display the old email address and ask the user which one they want to use.

There's an option to remember / remain logged in, there should really be an associated list of options (drop down box etc...) so that the user can select to just rememberthe user name, lock to this ip, make persistant till midnight, for a day, for a week, forever, until the sign out, untill they close the browser etc.. There should also be a way of stopping it being remembered without the user having to delete cookies (this is especially required since firefox 'stupidly' now blocks sites when you remove cookies from them without prompting which makes it a pain in the arse to get cookies working again and user who don't know about things like that may never figure out what going on and why the redmine site no longer works.

Also, the user account preferences should have an option to return to the last page viewed etc... when they next login or if they are automatically logged in. This is really handy and very desireable if the reason they left the redmin site is because the browser crashed or the power went etc....


Related issues

Related to Redmine - Defect #5230: Invalid form authenticity token.New2010-04-01

Actions
Related to Redmine - Defect #5915: Invalid form authenticity token for some usersClosed2010-07-20

Actions
Related to Redmine - Defect #9239: autenticity_token is not checked properlyClosed2011-09-13

Actions
Actions

Also available in: Atom PDF