As many users reported getting this error (app.err. #2800) while trying to submit a bug, is it correct to have it set? While I don't have a lot of hackers going to my site - probably that could work for now. ~0029187 TomR (reporter) 2011-07-18 07:21 Last edited: 2011-07-18 07:27View 2 revisions I am I have tried adding this line to the config file: (is it ok??) $g_allow_browser_cache = "always"; Hope it works, I will post here a feedback as soon as I get news. And like you said, if you refreshed the screen it grabs a new security token and you can enter in notes. useful reference

If I refresh my screen, retype what I wrote originally, and submit again, it goes through. I think this covers over 95% of all such cases. mod - core.php [Diff] [File] MantisBT: master-1.1.x 4ee424e1 Timestamp: 2008-11-13 18:39:49 Author: jreese [Details] [Diff] Fix 0009754 by reverting part of issue 0009323: IE6/7 cache too much cousing 2800 errors.

It seems that it jumps back to project A (with also the same #2800 problem). I hit Back (got back the form with all the fields filled in), tried to submit again, and got the error again. FYI - update - 11/3/08: I saw some other comments about clearing the cache etc. ibs, Good question, I'll think in this direction.

Cheers Notes Issue History Date Modified Username Field Change 2009-04-06 15:09 Vlady New Issue 2009-04-14 12:53 grangeway Status new => assigned 2009-04-14 12:53 grangeway Assigned To => jreese 2009-05-03 20:52 berbo Mantis Application Error #401 Are there textbooks on logic where the references to set theory appear only after the construction of set theory? Or (I guess the easiest way) just include this timeout in Java script which would disable button "Submit" on the report page after the timeout, and show the same message below Source Submit report 3.

has duplicate0010467closedjreeseApplication Error #2800 Relationships Notes ~0020479 vboctor (manager) 2008-12-24 03:28 This is fixed in 1.1.6, please upgrade and confirm that the problem is fixed. ~0020481 yop (reporter) 2008-12-24 05:39 Still The security risk is not really relevant for us, because we use the system only in the intranet. ~0021241 jreese (reporter) 2009-03-27 19:16 Do note that you are still at risk add user 4. In any case there is no sense to set this limit to greater than 3 days, because it's a Mantis login session timeout. (0024904) aiv (administrator) 2013-06-27 18:49 The session timeout

  • Hope it helps. ~0019852 AliG (reporter) 2008-11-12 10:34 I am running on Mantis 1.1.4, and I can reproduce all the time.
  • It took me quite some time to write the note for the first time, maybe 15 minutes, and after I retyped it in maybe 1-2 minutes the second time, I got
  • Edited: anyway if this change is stable then you can use "advanced search" for ordering results. ~0019817 xenusfr (reporter) 2008-11-08 16:46 Hi, I had the same bug.
  • Once clean it, the bug did not appear any more. ~0019832 baltun (reporter) 2008-11-10 11:50 may be it will be usefull for developers and users: i've found that if you add
  • Please refer to the corresponding troubleshooting section in the MantisBT Administrator's guide share|improve this answer answered May 28 '14 at 12:02 dregad 464312 add a comment| up vote 0 down vote
  • mt_rand() ); switch ( $g_show_action ) { case BOTH: if ( ( null !== $p_user_id ) && ( ON == user_pref_get_pref( $p_user_id, 'advanced_' . $p_action ) ) ) { return 'bug_'

For expired sessions however, the user is impacted by system behavior, which could not only cause confusion, but also potential loss of submitted form data. It means that you lose your form data if you try to submit it. Mantis Bug Tracker Application Error #2800 some pop-up notification can be provided).TagsNo tags attached.Test case numberAttached Files Relationships related to0024638closedbugmasterBug tracker - if category is not checked than Submit Report would lead to lost input Relationships Mantis Application Error #1502 This issue is very important and it would be great if any solution could be found... (0026899) aiv (administrator) 2013-11-25 19:06 edited on: 2013-11-26 11:17 I fully agree with you and I'm

So when you try to add a note it throws back an error saying your security token was invalid, which is just a fancy way of saying your login timed out. see here Everythig was good, but suddenly I can't report an issue anymore. If it is really necessary for some purpose (apart of training the people not to be relaxed), the behavior should be changed so as to preserve user input and allow the In the sense that it should at least try to grab a new security token if it can before erroring out. ~0024834 liyingm (reporter) 2010-03-21 18:26 Thanks for the reply.

Did you submit the form twice by accident?" Reproducibility: Not always, if this bug report has been accepted by mantis, or it was cookies. The have been instructed to use the Ctrl-F5 workaround. *I have posted the same note in 0009698 but since this is open I thought I 'd repost it. ~0020823 ga_acad (reporter) mod - core.php [Diff] [File] MantisBT: master 14d3d357 Timestamp: 2008-11-24 14:11:42 Author: jreese [Details] [Diff] Revert c6821f71, fix 0009754, 0009869, 0009323 by adding Last-Modified headers to match Expires. http://svbuckeye.com/application-error/application-error-2800-mantisbt.php Have you noticed the changes and what do you think is this enough? (0025040) abv (manager) 2013-07-12 07:09 I deem 2 hours is still not sufficient, since it is usual situation

The 'fix' there is simply to turn off form validation. By the way, our Mantis recently has been upgraded from version 1.0.0a2 to 1.2.0 and migrated from a Debian box to a Red Hat box. Extracting text from file and output the line into a file What will i++ + i++ evaluate to in C++17?

The issue with form data getting lost when hitting the back button is a different topic altogether (see 0012492 and others) for which there is currently no solution. ~0033280 j_schultz (reporter)

Attached Files Relationships Relationships Notes (0000564) schorpp (reporter) 2015-02-13 07:34 2015-02-13 07:30 EET "APPLICATION ERROR #2800 Invalid form security token. What happens is driven by several php.ini configuration settings: The ratio session.gc_probability divided by session.gc_divisor, which determines the probability that the garbage collection process will start when a session is initialized. Is this a known problem? ~0021270 Chi-Yu (reporter) 2009-03-30 04:17 We are not using a proxy and we have the same problem. Additional InformationFull path: /www/alefe/www/htdocs/mantis/core/form_api.php Line: 104 Variable Value Type p_form_name manage_proj_user_add string t_tokens Variable Value Type manage_proj_cat_delete Variable Value Type 0 20090406-5ad8a2345caf68bdde035e28639c5c65e606673e string 1 20090406-df625c8c9df28b72ec07ebe0b9077d99a4739ef8 string 2 20090406-d35b55dec77aacb6ac9ae8d9de296b19b489b823 string manage_proj_cat_add Variable

The issue occurs on Firefox and IE the latest versions. It *could* be a php-related problem. Thus I propose to work in this direction: instead of reloading the page, give a timeout message in separate field so that the form data are preserved. Get More Info If the garbage collector has removed the session data, then the http form's security token (CSRF protection) is no longer valid.

It seems that upgrading to version 1.1.6 was a bad idea since Mantis is pretty much unusable right now. ~0021280 jreese (reporter) 2009-03-30 08:47 skay, check that you don't have any