[geeklog-devtalk] Remote Authentication ;-)

Dirk Haun dirk at haun-online.de
Fri Feb 4 15:39:20 EST 2005


Mike,


>This is how drupal works. This is indeed an all geeklog or no geeklog auth

>method, which clearly isn't desirable.


Yep. We need a more fine-grained solution. A simple list (or two, for
allow/disallow) that would accept domain names or regexps should be fine.
Something similar to the personal blacklist in the SpamX, for example.


[Disable accounts]

>I didn't realise that didn't exist. Perhaps I should add it since I'm in

>users.php anyway? Disabled big flag?


Yeah, a flag should do. But we have to make sure they can't log in with
an existing cookie, can't request a new password, etc. Nothing
complicated, just need to add checks in a few places - and make sure we
catch them all.

bye, Dirk


--
http://www.haun-online.de/
http://geeklog.info/




More information about the geeklog-devtalk mailing list