部署了MantisBt 2.24.4,只要设置到POST(提交、保存)就出现#2800 无效的安全权标。这可能是会话超时或者重复提交表单导致的。
可能和php session有关,你检查一下你的php session设置是否正确,session是否可以正常读写
php.ini session 设置如下:
session.save_handler = files
session.save_path = "/var/lib/php/session"
session.use_strict_mode = 0
session.use_cookies = 1
;session.cookie_secure =
session.use_only_cookies = 1
session.name = PHPSESSID
session.auto_start = 0
session.cookie_lifetime = 0
session.cookie_path = /
session.cookie_domain =
session.cookie_httponly =
session.serialize_handler = php
session.gc_probability = 0
session.gc_divisor = 1000
session.gc_maxlifetime = 1440
session.referer_check =
;session.entropy_length = 32
;session.entropy_file = /dev/urandom
session.cache_limiter = nocache
session.cache_expire = 180
session.use_trans_sid = 0
session.hash_function = 0
session.hash_bits_per_character = 5
CSRF protection问题也调整了mantisbt config_inc.php 也添加了:
$g_form_security_validaton = OFF;
但是还是没什么作用。
你好,我也遇到同样的问题,你最终解决说目前权限问题,方便具体说明下吗?谢谢!