Digest authentication issue?

From: Henrik Nordstrom <hno@dont-contact.us>
Date: 02 Dec 2002 11:12:13 +0100

Got a report from a user that Digest authentication does not seem
working very well, randomly allowing access even if the password is not
valud.

It seems that under some conditions with invalid responses the response
either is accepted as if it was a valid response or alternatively acl
processing continues past the proxy_auth acl as if the user did not
match (I do not know for sure which of the two yet). The username is
set and logged in access.log.

Regards
Henrik
Received on Mon Dec 02 2002 - 03:12:16 MST

This archive was generated by hypermail pre-2.1.9 : Tue Dec 09 2003 - 16:18:59 MST