Hi

But I see the source of the LoginFilter.java.


if (loginCookie != null) 
                {
                    RequestUtil.setCookie(response, RollerRequest.LOGIN_COOKIE,
                                          loginCookie,
                                          request.getContextPath());
                    loginCookie = Utilities.decodeString(loginCookie);

                    String[] value = StringUtils.split(loginCookie, '|');

                    UserData user = mgr.getUser( value[0] );

                    // authenticate user without displaying login page
                    String route = "/auth?j_username=" +
                                   user.getUserName() + "&j_password=" +
                                   user.getPassword();

                    request.setAttribute("encrypt", "false");
                    request.getSession().setAttribute("cookieLogin", "true");

                    if (mLogger.isDebugEnabled()) 
                    {
                        mLogger.debug("I remember you '" + user.getUserName() +
                                  "', attempting to authenticate...");
                    }

                    RequestDispatcher dispatcher =
                        request.getRequestDispatcher(route);
                    dispatcher.forward(request, response);

                    return;
                }



this code is used to autologin.


it can directly login.

so I want to create a new jsp file . and do like that .

but it is wrong.

I don't know why?
-- 
fengjun <[EMAIL PROTECTED]>

Reply via email to