Bug in Joomla login API. Remember me cookies get overwritten
Budget: €30 – €250 EUR
Hi,
This bug concerns the login over the API. We have an app (which is basically just a browser) which uses the API provided by the Jbackend component and a plugin that does Community Builder login.
The problem:
If you login via the API, the remember me cookie is set and everything works fine. The perpetual login works perfectly and you stay logged in for whatever you set the remember me cookie to be.
BUT, if you login via computer (with the same username), your session on the phone continues until the end and then you are logged out -> remember me cookie is not kept.
This also happens when you first login with the computer and then with the app.
Likely cause: The remember me cookie is not placed correctly. There must a) be an overwrite somewhere or b) that it shifts the remember me cookie to the last session that logged in and deletes the remember me cookie from any other sessions.
I can remember my ex-programmer talking that the sessions are currently getting overwritten. At the time I did not grasp the importance of it so I am guessing that this is the cause.
Please title your offer: "Only Joomla APIs are the way forward". Otherwise will not be taken into account.
This bug concerns the login over the API. We have an app (which is basically just a browser) which uses the API provided by the Jbackend component and a plugin that does Community Builder login.
The problem:
If you login via the API, the remember me cookie is set and everything works fine. The perpetual login works perfectly and you stay logged in for whatever you set the remember me cookie to be.
BUT, if you login via computer (with the same username), your session on the phone continues until the end and then you are logged out -> remember me cookie is not kept.
This also happens when you first login with the computer and then with the app.
Likely cause: The remember me cookie is not placed correctly. There must a) be an overwrite somewhere or b) that it shifts the remember me cookie to the last session that logged in and deletes the remember me cookie from any other sessions.
I can remember my ex-programmer talking that the sessions are currently getting overwritten. At the time I did not grasp the importance of it so I am guessing that this is the cause.
Please title your offer: "Only Joomla APIs are the way forward". Otherwise will not be taken into account.