Warning: mysqli::__construct(): (HY000/1203): User howardkn already has more than 'max_user_connections' active connections in D:\Inetpub\vhosts\howardknight.net\al.howardknight.net\includes\artfuncs.php on line 21
Failed to connect to MySQL: (1203) User howardkn already has more than 'max_user_connections' active connections
Warning: mysqli::query(): Couldn't fetch mysqli in D:\Inetpub\vhosts\howardknight.net\al.howardknight.net\index.php on line 66
Article <svcn1j$a9m$1@ns507557.dodin.fr.nf>
Deutsch   English   Français   Italiano  

View for Bookmarking (what is this?)
Look up another Usenet article

Path: ...!1.us.feeder.erje.net!feeder.erje.net!tncsrv06.tnetconsulting.net!weretis.net!feeder6.news.weretis.net!i2pn.org!dodin.fr.nf!.POSTED.82-64-122-108.subs.proxad.net!not-for-mail
From: jdd <jdd@dodin.org>
Newsgroups: fr.comp.usenet.serveurs
Subject: =?UTF-8?Q?Re=3a_comment_ignorer_les_cancels_non_authentifi=c3=a9s?=
Date: Sat, 26 Feb 2022 09:06:11 +0100
Organization: Le serveur de jdd pour fr*
Message-ID: <svcn1j$a9m$1@ns507557.dodin.fr.nf>
References: <sv5i3p$6d2$1@ns507557.dodin.fr.nf>
 <sv64jp$2d1l0$1@news.trigofacile.com> <sv6eb7$f2t$1@ns507557.dodin.fr.nf>
 <sv7k55$p4m$1@rasp.pasdenom.info> <sv8h7a$2elhi$1@news.trigofacile.com>
 <sv8j07$a11$1@rasp.pasdenom.info> <sv8nmq$2eol9$1@news.trigofacile.com>
 <sv9pma$br0$1@rasp.pasdenom.info> <svauo8$2h228$1@news.trigofacile.com>
NNTP-Posting-Host: c3066ed76bae8bcc0e476efb157ff758
Mime-Version: 1.0
Content-Type: text/plain; charset=UTF-8; format=flowed
Content-Transfer-Encoding: 8bit
Injection-Date: Sat, 26 Feb 2022 08:06:11 -0000 (UTC)
Injection-Info: ns507557.dodin.fr.nf; posting-host="82-64-122-108.subs.proxad.net:";
	logging-data="10550"; mail-complaints-to="abuse"
User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:91.0) Gecko/20100101
Content-Language: fr
In-Reply-To: <svb4t1$o1g$1@rasp.pasdenom.info>
Bytes: 2104
Lines: 19

Le 25/02/2022 à 18:50, yamo' a écrit :

> À moins de dire une grosse bêtise, il me semble que tous les clients NNTP
> sur dodin ont le même user (ils ne sont pas authentifiés) et avec le code
> fourni par Gérald, le cancel-lock est généré pour un user. Donc si c'est
> le cas n'importe quel utilisateur non authentifié pourra annuler un post
> dodin.

je lis dans https://www.rfc-editor.org/rfc/rfc8315.html:

A posting agent that uses a dedicated local secret <sec> for every
    user should use an empty string for the <uid> part.

Le fait de ne pas avoir d'uid affaiblit le système mais ne le rends pas 

enfin, c'est ce que je comprends
