cancel
Showing results for 
Search instead for 
Did you mean: 

How to keep users logged in after hybris upgrading ?

9999999
Participant

We faced an issue when upgrading hybris from 2205 to 2211.

Currently on spring security upgrade we got into situation that OAuth tokens for customers and applications in SAP commerce became invalid and system drops old tokens generated and require user to login again and then generates new token using new salt and encryption.

Does someone know how to keep users logged in when upgrading SAP commerce with spring security ?

View Entire Topic
9999999
Participant
0 Kudos

Fixed it by overriding spring-security-core-5.8.5.jar  and org.springframework.security:spring-security-web . 
Took old classes from spring-***-***-5.6.1.jars and placed tham in new  spring-***-***-5.8.5.jars by java command that helps to modify jars:
jar uf spring-security-core-5.8.5.jar org/springframework/security/authentication/UsernamePasswordAuthenticationToken.class org/springframework/security/core/authority/SimpleGrantedAuthority.class 
Made configuration so that my jars (~/core-customize/hybris/config/customize/platform/ext/core/lib/spring-security-core-5.8.5.jar and spring-security-web-5.8.5.jar ) override platform jars.