David Ostrovsky
2014-03-11 b799d545f37f7123aaa1ee1d0ff3b61f1f3cc8c2
src/main/java/com/gitblit/wicket/pages/SessionPage.java
@@ -56,8 +56,18 @@
         // any changes to permissions or roles (issue-186)
         UserModel user = app().users().getUserModel(session.getUser().username);
         if (user.disabled) {
            // user was disabled during session
            HttpServletResponse response = ((WebResponse) getRequestCycle().getResponse())
                  .getHttpServletResponse();
            app().authentication().logout(response, user);
            session.setUser(null);
            session.invalidateNow();
            return;
         }
         // validate cookie during session (issue-361)
         if (app().settings().getBoolean(Keys.web.allowCookieAuthentication, true)) {
         if (user != null && app().settings().getBoolean(Keys.web.allowCookieAuthentication, true)) {
            HttpServletRequest request = ((WebRequest) getRequestCycle().getRequest())
                  .getHttpServletRequest();
            String requestCookie = app().authentication().getCookie(request);