Jenkins 日志解析器插件 - 已解析的控制台日志页面未显示 X-Frame-Options 拒绝的加载不允许框架 ERR_BLOCKED_BY_RESPONSE

Jenkins Log parser plugin - parsed console log page is not showing Load denied by X-Frame-Options does not permit framing ERR_BLOCKED_BY_RESPONSE

詹金斯版本:1.642.3 2.32.3

Jenkins 机器Ubuntu14.04

日志解析器插件:2.0

正在从我的 Mac OS sierra 机器上浏览 Jenkins。

在Jenkins全局配置中,我创建了一个新条目(描述和文件路径(完整),其中文件包含以下内容)。

error /ERROR: Couldn't find any revision to build./
error /SyntaxError: Use of const in strict mode./
error /svn: E220003: /
error /npm ERR! fetch failed/
error /ERROR: Found inconsistencies/
error /ERROR: svn up failed for /
error /rsync error: /

warning /WARNING: /
warning /npm WARN retry/
warning /svn: E200033: /
warning /: binary operator expected/
warning /: too many arguments/
warning /: No such file or directory/

info /rsync: failed to set times on/
info /svn: E170001: /

我创建了一个测试作业并捕获所有这些情况(如上所列),在作业的 post-build 部分中,我通过选择相同的日志解析文件条目启用 "Console output (build log) parsing" (列表框选择)。 我 运行 构建并且正如预期的那样失败了。

Build step 'Console output (build log) parsing' changed build result to FAILURE

在作业的仪表板上,我看到了这个。

单击 Parsed Console Output(左侧栏),将我带到一个页面,但没有提供任何有意义的信息。

当我将鼠标悬停在上面的侧边栏 link 上时,它显示 Jenkins 正在寻找 https://.../../parsed_console URL 给定的作业构建号(如上图的地址栏所示).

我在这里缺少什么来获取包含所有错误、警告和信息仪表板的已解析控制台输出页面,就像这个插件声称在此处提供的内容:https://wiki.jenkins.io/download/attachments/43713289/parsed_console_output_3.JPG?version=1&modificationDate=1271216347000&api=v2

PS:

在我的 $JENKINS_HOME(在 master 上)的插件文件夹下,我看到 "log-parser.hpi" 文件(最新文件和 SHA 与我在本地 [=139 下载时看到的匹配) =] 机)。在 Jenkins 重启期间,我没有看到任何与此插件相关的错误日志。

在 Jenkins 作业的 $JENKINS_HOME/jobs//builds/ 文件夹中,我看到有效的 log*.html 有效大小的文件(当您单击 "Parsed Console Output" 侧边栏 link.

时,此插件会读取这些文件以显示信息

浏览 log_ref.html 显示有效 links.

jenkins@jenkins-master:/opt/data/jenkins/jobs/testing_log_parser_testing/builds/14$ ls -ltr
total 40
-rw-r--r-- 1 jenkins jenkins    6 Aug 21 13:47 changelog.xml
-rw-r--r-- 1 jenkins jenkins 3145 Aug 21 13:47 log_content.html
-rw-r--r-- 1 jenkins jenkins  945 Aug 21 13:47 logwarningLinks.html
-rw-r--r-- 1 jenkins jenkins 4022 Aug 21 13:47 log_ref.html
-rw-r--r-- 1 jenkins jenkins  267 Aug 21 13:47 loginfoLinks.html
-rw-r--r-- 1 jenkins jenkins  277 Aug 21 13:47 log.html
-rw-r--r-- 1 jenkins jenkins 1130 Aug 21 13:47 logerrorLinks.html
-rw-r--r-- 1 jenkins jenkins 2315 Aug 21 13:47 log
-rw-r--r-- 1 jenkins jenkins 1089 Aug 21 13:47 injectedEnvVars.txt
-rw-r--r-- 1 jenkins jenkins 2391 Aug 21 13:47 build.xml
jenkins@jenkins-master:/opt/data/jenkins/jobs/testing_log_parser_testing/builds/14$ cat -n loginfoLinks.html
     1  <li>1 <a target="content" href="log_content.html#INFO1"><span style="color:blue">rsync: failed to set times on/</span></a></li><br/>
     2  <li>2 <a target="content" href="log_content.html#INFO2"><span style="color:blue">svn: E170001: Auth reqd i guess</span></a></li><br/>
jenkins@jenkins-master:/opt/data/jenkins/jobs/testing_log_parser_testing/builds/14$ cat -n logwarningLinks.html
     1  HEADER HERE: #0
     2  <li>1 <a target="content" href="log_content.html#WARNING1"><span style="color:orange">WARNING: are not that bad actually</span></a></li><br/>
     3  <li>2 <a target="content" href="log_content.html#WARNING2"><span style="color:orange">npm WARN retry -- won't do any good</span></a></li><br/>
     4  <li>3 <a target="content" href="log_content.html#WARNING3"><span style="color:orange">svn: E200033: db locked again?? no way</span></a></li><br/>
     5  <li>4 <a target="content" href="log_content.html#WARNING4"><span style="color:orange">: binary operator expected -- lol</span></a></li><br/>
     6  <li>5 <a target="content" href="log_content.html#WARNING5"><span style="color:orange">: too many arguments - check the usage please</span></a></li><br/>
     7  <li>6 <a target="content" href="log_content.html#WARNING6"><span style="color:orange">: No such file or directory comes whenever you are looking for something which doesn't exist atm</span></a></li><br/>
jenkins@jenkins-master:/opt/data/jenkins/jobs/testing_log_parser_testing/builds/14$ cat log_ref.html 
<!DOCTYPE html>
<html>
        <head>
                <title>log-parser plugin page</title>
                <link type="text/css" rel="stylesheet" href="https://jenkins-master.company.com/jenkins_instance01/css/style.css" />
                <link type="text/css" rel="stylesheet" href="https://jenkins-master.company.com/jenkins_instance01/css/color.css" />
        </head>
        <body>
<script type="text/javascript">
        function toggleList(list){
                element = document.getElementById(list).style;
                element.display == 'none' ? element.display='block' : element.display='none';
        }
</script>
<img src="https://jenkins-master.company.com/jenkins_instance01///static/a8e7a2ad/images/16x16/red.gif" style="margin: 2px;" width="24" alt="Error Icon" height="24" />
<a href="javascript:toggleList('Error')" target="_self"><STRONG>Error (7)</STRONG></a><br />
<ul id="Error" style="display:none; margin-left:0; padding-left:3em">
 <a target="content" href="log_content.html">Beginning of log</a>
<br/>(7 Errors in this section)<br/>
<li>1 <a target="content" href="log_content.html#ERROR1"><span style="color:red">1 ERROR: Couldn't find any revision to build &lt;= this is an error</span></a></li><br/>
<li>2 <a target="content" href="log_content.html#ERROR2"><span style="color:red">SyntaxError: Use of const in strict mode &lt;= this is another type of error (syntax)</span></a></li><br/>
<li>3 <a target="content" href="log_content.html#ERROR3"><span style="color:red">svn: E220003: Unable to connect to a repository at URL</span></a></li><br/>
<li>4 <a target="content" href="log_content.html#ERROR4"><span style="color:red">svn: E220003: Invalid authz configuration</span></a></li><br/>
<li>5 <a target="content" href="log_content.html#ERROR6"><span style="color:red">npm ERR! fetch failed-- fetch may be?</span></a></li><br/>
<li>6 <a target="content" href="log_content.html#ERROR7"><span style="color:red">ERROR: svn up failed for --- well why not switch to Git/Hg</span></a></li><br/>
</ul>
<img src="https://jenkins-master.company.com/jenkins_instance01///static/a8e7a2ad/images/16x16/yellow.gif" style="margin: 2px;" width="24" alt="Warning Icon" height="24" />
<a href="javascript:toggleList('Warning')" target="_self"><STRONG>Warning (6)</STRONG></a><br />
<ul id="Warning" style="display:none; margin-left:0; padding-left:3em">
 <a target="content" href="log_content.html">Beginning of log</a>
<br/>(6 Warnings in this section)<br/>
<li>1 <a target="content" href="log_content.html#WARNING1"><span style="color:orange">WARNING: are not that bad actually</span></a></li><br/>
<li>2 <a target="content" href="log_content.html#WARNING2"><span style="color:orange">npm WARN retry -- won't do any good</span></a></li><br/>
<li>3 <a target="content" href="log_content.html#WARNING3"><span style="color:orange">svn: E200033: db locked again?? no way</span></a></li><br/>
<li>4 <a target="content" href="log_content.html#WARNING4"><span style="color:orange">: binary operator expected -- lol</span></a></li><br/>
<li>5 <a target="content" href="log_content.html#WARNING5"><span style="color:orange">: too many arguments - check the usage please</span></a></li><br/>
<li>6 <a target="content" href="log_content.html#WARNING6"><span style="color:orange">: No such file or directory comes whenever you are looking for something which doesn't exist atm</span></a></li><br/>
</ul>
<img src="https://jenkins-master.company.com/jenkins_instance01///static/a8e7a2ad/images/16x16/blue.gif" style="margin: 2px;" width="24" alt="Info Icon" height="24" />
<a href="javascript:toggleList('Info')" target="_self"><STRONG>Info (2)</STRONG></a><br />
<ul id="Info" style="display:none; margin-left:0; padding-left:3em">
<li>1 <a target="content" href="log_content.html#INFO1"><span style="color:blue">rsync: failed to set times on/</span></a></li><br/>
<li>2 <a target="content" href="log_content.html#INFO2"><span style="color:blue">svn: E170001: Auth reqd i guess</span></a></li><br/>
</ul>
        </body>
</html>

进一步调查此插件的 GitHub source codeLogParserParser.java 文件)以及我在 Jenkins 作业中的 $JENKINS_HOME/jobs //builds// 文件夹,我发现 log.html 可能不正确。不知道为什么它指的是build.log(如href),而没有这样的文件在文件系统上。 PS<frame src=.... 指的是 log_ref 和 log_content.html 文件,它们都可以正常渲染。

<frameset cols="270,*">
<frame src="log_ref.html" scrolling=auto name="sidebar">
<frame src="log_content.html" scrolling=auto name="content">
<noframes>
<p>Viewing the build report requires a Frames-enabled browser</p>
<a href='build.log'>build log</a>
</noframes>
</frameset>

这一行显示变量 parsedLogURL 指向 log.htmlhttps://github.com/jenkinsci/log-parser-plugin/blob/1cc883708524e33792d410a109e6cb69a4c0439b/src/main/java/hudson/plugins/logparser/LogParserParser.java#L162

浏览https://<jenkins_server>/<instance>/job/<job_name>/<someBuildNumber>/parsed_consoleParsed Console Output侧边栏link没有给出任何内容) https://<jenkins_server>/<instance>/job/<job_name>/<someBuildNumber>/parsed_console/log.html(仅呈现 2 帧之间的垂直 BAR 线(移动),但不呈现这 2 帧内的内容(log_ref.html 和 log_content.html))

在 Firefox 中:在我的 Mac 机器上的浏览器上 "Parsed Console Output" 边栏 link 执行 检查页面(参考:https://<jenkins_server>/<instance>/job/<job_name>/<someBuildNumber>/parsed_console) 在 Inspect page > Console 部分显示以下行。

Load denied by X-Frame-Options: https://<jenkins_server>/<jenkins_instance>/job/<job_name>/<build_number>/parsed_console/log.html does not permit framing.  (unknown)

如果 我浏览 https://<jenkins_server>/<instance>/job/<job_name>/<someBuildNumber>/parsed_console/log.html,那么我会在 Inspect page > Console window 中得到以下几行:

https://<jenkins_server>/<jenkins_instance>/job/<job_name>/<build_number>/parsed_console/log_ref.html does not permit framing.  (unknown)
Load denied by X-Frame-Options: https://<jenkins_server>/<jenkins_instance>/job/<job_name>/<build_number>/parsed_console/log_content.html does not permit framing.  (unknown)

在Chrome中,在页面上做Inspect,显示如下错误(Refused to display / frame because it set 'X-Frame-Options' to 'deny' / net::ERR_BLOCKED_BY_RESPONSE):

Refused to display 'https://<jenkins_server>/<jenkins_instance>/job/<jobname>/15/parsed_console/job/<jobname>/15/parsed_console/log.html' in a frame because it set 'X-Frame-Options' to 'deny'.
(index):22 GET https://<jenkins_server>/<jenkins_instance>/job/<jobname>/15/parsed_console/job/<jobname>/15/parsed_console/log.html net::ERR_BLOCKED_BY_RESPONSE

问题不在于插件。

在网页上使用 Inspect,很明显 Apache / Nginx 中的某些内容被设置为 DENY。

我修改了我的 /etc/nginx/sites-enabled/jenkins_https.conf 文件

   #add_header X-Frame-Options DENY;

运行

sudo service nginx restart

插件现在按预期呈现输出。

另一个更好的解决方案是:

替换下面一行

#add_header X-Frame-Options DENY;

在您的 nginx 配置文件中添加以下行:

add_header X-Frame-Options SAMEORIGIN;

参考: https://geekflare.com/add-x-frame-options-nginx/https://www.owasp.org/index.php/Clickjacking_Defense_Cheat_Sheet