Some Eclipse Foundation services are deprecated, or will be soon. Please ensure you've read this important communication.
Bug 431899 - EGit locks account due to several attempts to login in case of incorrect password
Summary: EGit locks account due to several attempts to login in case of incorrect pass...
Status: CLOSED FIXED
Alias: None
Product: EGit
Classification: Technology
Component: Core (show other bugs)
Version: 3.3   Edit
Hardware: PC Windows 7
: P3 normal (vote)
Target Milestone: ---   Edit
Assignee: Project Inbox CLA
QA Contact:
URL:
Whiteboard:
Keywords:
Depends on: 431209
Blocks:
  Show dependency tree
 
Reported: 2014-04-03 08:03 EDT by Vincent Latombe CLA
Modified: 2015-07-01 01:05 EDT (History)
2 users (show)

See Also:


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Vincent Latombe CLA 2014-04-03 08:03:51 EDT
Using EGit 3.3.1.201403241930-r to access an http based server, if the password has changed/is incorrect, EGit will attempt at least 3 times the same credentials before asking for a new password.
The problem is my account gets locked after 3 failed attempts, so when I'm prompted for the new password, my account is locked, and subsequent attempts fail even if the password is correct.

-> EGit should try only once the credentials. If he gets an Authentication Failed, it should prompt for the new password.

I believe the guilty change has been introduced by 
https://git.eclipse.org/r/#/c/23441/
Comment 1 Matthias Sohn CLA 2014-04-03 12:09:57 EDT
this is a consequence of bug 431209 and should be fixed by the proposed fix
Comment 2 Robin Stocker CLA 2014-04-18 08:56:40 EDT
This should be fixed in EGit 3.3.2. Could you please update to EGit 3.3.2 from the main update site and verify that it's fixed?:

http://eclipse.org/egit/download/
Comment 3 Vincent Latombe CLA 2014-05-22 12:01:01 EDT
Using 3.3.2.201404171909-r, I still encounter the issue, the plugin does several unsuccessful authentication attemps and gets me locked out.
Comment 4 Vincent Latombe CLA 2014-05-22 12:01:20 EDT
Reopening.
Comment 5 Vincent Latombe CLA 2014-05-22 12:05:12 EDT
My detailed scenario :
- blank secure storage
- try to fetch from an authenticated repo
- I get prompted for login/password
- I get the master password creation prompt with secret questions
- In the mean time I get a new popup for login/password (so I guess the plugin did a new try)
Comment 6 Matthias Sohn CLA 2014-05-23 10:24:34 EDT
this works for me

could you please check if all installed jgit and egit bundles are version 3.3.2.201404171909-r ?
Comment 7 Mykola Nikishov CLA 2015-06-30 15:55:23 EDT
[Batch change] Remove pre-3.7 Target Milestones

If anyone on CC list is going to fix/implement this, please assign a new 3.7+ target milestone.
Comment 8 Vincent Latombe CLA 2015-07-01 01:05:00 EDT
I didn't get the problem for a while (keeping my EGit updated regularly), unfortunately I'm unable to tell on which version it got fixed (maybe on 3.3.2 as Matthias said). Anyway, I'm closing the ticket, thank you for the fix.