New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Authorization problems in 3.7.0 #13879
Comments
Did you check for any JavaScript or PHP errors? |
Thanks for your reply. In the JavaScript console i get: Possibly unhandled rejection: You can't access this resource as it requires 'view' access for the website id = 1. index.php:245:467 I can't check the PHP logfiles because the site is installed on a shared hosting enviroment. Are there any special requirements for PHP? Can i check the database, if everything is set up correctly? |
The installer should check the PHP env while installing. Can you check if your shared hosting is using mod_sec2? Matomo does not work with most configs of mod_sec2. You could ask your hoster to send you the logs? |
This sounds quite similar to a lot of other unsolved issues that have been reported recently: Would be interesting to know what is causing this. |
Yes, these posts seem to describe the same problem. My System Check also reports everything ok except for the warnig Geolocation works, but you are not using one of the recommended providers. |
@fdellwing Seems like mod_security2 is active and i will not get the logs from the hoster. Is there a workaround, if mod_security2 is causing these problems? |
I would say there will be one more beta before Christmas holidays. |
I was looking deeper into this. The dashboard makes a POST request to The following GET request to the returned location returns the error response All requests send the valid session id in the cookie header and on the server some requests also seem to be authorized. In the server log i see: [...]/core/Access.php(537): You can't access this resource as it requires 'view' access for the website id = 1. There is another POST request before that to |
Funny... we had maybe a similar issue here: #13883 and proposed a fix in #13892 but I couldn't actually reproduce the issue. Not sure if related. It also somehow reminds me of #13795 Can you always reproduce this issue? What are the exact steps and what kind of access does your user have? View, Write, Admin or Super user? Do you know? |
Yes it happens reproducible every time after login when the dashboard is loaded. The user is super user.
I will try to understand what is happening on the server side at the beginning of the new year. |
Thanks it would be great if you could try to understand what is happening. I've been trying to reproduce this for a while but can't. Ideally, also make sure all plugins are up to date just in case. |
Someone on the forum had a similar issue which got suddenly fixed with 3.8.1: |
That was likely due du renaming the session cookie |
I am also facing the same issue as mentionee above by @iherwig. Can someone help me fix the same, please? |
Is it fixed with 3.8.1? |
Sorry for the late answer. |
Thanks for letting us know 👍 |
I installed Matomo 3.7.0 following the installation guide (set up super user and first website). When i use the super user account to log in to the dashboard, the dashboard is empty and i get the following error message:
You can't access this resource as it requires 'view' access for the website id = 1.
On top of the Settings > Personal > Settings page i get the error message:
You must be logged in to access this functionality.
On the Settings > Websites > Manage page i get the error message:
You can't access this resource as it requires view access for at least one website.
and the text:
Your Web Analytics reports need Websites! Add, update, delete Websites, and show the JavaScript to insert in your pages. You currently have access to ? websites.
A user with Super User access can also specify global settings for new websites.
The application is running on Apache/2.4.35, PHP 7.2. Browser is Firefox 64.0 (64-Bit) or Chome 71.0.3578.98 (64-Bit).
There seems to be something wrong with the user permissions. Can you help me please?
The text was updated successfully, but these errors were encountered: