apache / apache/jmeter

Why does this setting exist? proxy.headers.remove (Cookie and Authorization are always removed)

Open
#6,315 0 comments 0 reactions 0 assignees View on GitHub
enhancement to-triage
Dominant language
Java
Stars
9.5k
Forks
2.3k
Avg merge
1d 22h
Merged PRs (30d)
5

Description

### Use case

I now expect how to configure the cookie field in headers instead of writing to the cookie.

If you need to write the cookie field in headers to the cookie, why not let the user configure it? Forcing default removal doesn't feel like a friendly setting

I configure a key-value value in headers manager that can be a cookie:
![image](https://github.com/user-attachments/assets/33035ffa-36b5-4729-9c02-3ca0cab871d7)

anticipate:
![image](https://github.com/user-attachments/assets/ad197b4a-c37b-4b37-8e16-9f64278f3d3e)

actual:
![image](https://github.com/user-attachments/assets/2b277e4b-dc2f-4111-8d9b-1f9ac0d9d630)

### Possible solution

_No response_

### Possible workarounds

_No response_

### JMeter Version

5.6

### Java Version

_No response_

### OS Version

_No response_

Contributor guide

Open the contributing guide

Research direction

Start by reproducing the reported behavior in JMeter 5.6 with Headers Manager and the proxy.headers.remove setting, checking whether Cookie and Authorization are always removed. Then trace the proxy header-removal configuration and its documentation to determine the intended behavior. Done should include an agreed configurable outcome and coverage for the reported header cases.

Written by the indexing model from the issue text.

Assessment

Tech stack
java
Domain
networking, tooling
Issue type
Feature
Difficulty
5/5
Estimated time
Over a week
Activity status
Stale
Clarity
Needs clarification
Newbie friendliness
25/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.