[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Bug#219774: Doesn't help



On Fri, 14 Nov 2003, Michael Holzt wrote:

> > Don't be stupid.
>
> I'm not stupid. Broken authorisation handling is in fact a security problem,
> and makes the package unusable to a very high percentage of users. We don't
> know for sure if this problem doesn't introduce other security problems as
> well.

First of all none of you have been providing enough information about your
setup. Authentication works for me using different schemes. Which
authentication modules are not working for you? Which is your config?
Which directives are you using??

> Interesting enough, that no reaction to the initial bug report so far, but
> after changing the severity to a value you view as inappropiate, you are
> able to change it back.

Because I do expected DD's being able to file a decent bug other than
flaming the maintainers.

> Some reaction to the problem - which is a real
> and grave problem!

Until:

a) we cannot reproduce it
b) we are lacking information

i will not consider this bug serious enough.

> - would have been more important. Hell a lot of people
> and web applications depend on this feature.

me as well but it works on several of my system and it did never broke
across upgrades.

Fabio

-- 
Our mission: make IPv6 the default IP protocol
"We are on a mission from God" - Elwood Blues

http://www.itojun.org/paper/itojun-nanog-200210-ipv6isp/mgp00004.html



Reply to: