Hi Adam,
- authenticated user's name is taken from the "user:" field in "access"
section of readers.conf
The authenticated user's name is the identity assigned by the matching
auth group. This identity matches the "users" field pattern in access
group.
- INN servers starting with 2.7.0 will refuse to honor cancels without
correct Cancel-Lock headers (I'm not sure about this)
Yes, because it is the default value of "docancels" in inn.conf. It's
the safest configuration.
Now, from theory to practice.
- I set canlockadmin (during testing I kept canlockuser empty)
- I posted a message to my local group (kept in timehash, if that matters)
- I generated two cancels with gencancel
- I altered one of them so the hashes won't match
- I posted the altered one
- I posted the unaltered one
I expected to have the post available after posting the altered cancel,
but gone after posting the unaltered cancel. But the post is still on the group. Why didn't it work?
I don't know.
I also expected to have something logged about incorrect cancel hash, but
I can't find anything. Should there be some log line about it?
This mismatch is not logged.
Also, can I control if my server accepts cancels or not (even better, by matching the pattern)? It would be best if there were three settings:
never accept, always accept (even unauthenticated), or accept only if cancel-lock matches.
It is the "docancels" parameter in inn.conf.
--
Julien ÉLIE
« Ira furor breuis est. » (Horace)
--- SoupGate-Win32 v1.05
* Origin: fsxNet Usenet Gateway (21:1/5)