Re: First LiveUser package release is near
| From: | Bertrand Mansion | Date: | Mon, 30 Sep 2002 08:44:57 +0000 |
| Subject: | Re: First LiveUser package release is near | ||
| References: | 1 | Groups: | php.pear.dev |
| Request: | Send a blank email to pear-dev+get-9708@lists.php.net to get a copy of this message | ||
le 30/09/02 1:12, Markus Wolff à wolff@21st.de a écrit :
> Hi all,
>
> thanks to the great contributions made by Christian, Lukas and
> Pierre-Alain, a first package release of the LiveUser authentication /
> permission management framework is soon to come.
>
> I´ve updated the project description and feature list as well as the
> todo list on the project´s website - if someone wants to take over one
> of the pending tasks, please feel free to contact me (I´m especially
> looking for someone with LDAP experience who could write an LDAP
> authentication container).
>
> Check out the project website:
> http://projects.21st-hq.de/liveuser/
>
> Currently two things are missing before I can release the first package:
>
> 1. A new category on the PEAR website has to be added: "Perm"
> As the force is not strong enough with me, I guess one of the PEAR
> Jedi knights will have to do this :-)
> 2. As the LoginManager has changed quite a bit internally, I want to
> make some more tests before the release. We have a public holiday
> coming up in Germany on thursday, so I guess I know what to do with
> my free time already :-)
Hi Markus,
Good news !
Method userNotActive could be clearer if called isActive or isUserActive
just like the other isLoggedIn method.
Also for the 'remember me' feature, it might be better, in the complex mode
maybe, to store a 'login:password' md5 hash (or just a unique id) in the
cookie and to check on every call if this hash can be found in the db. This
is because it's easier to guess someone's login (for instance mw21st) than a
32 chars md5 hash.
Cheers,
Bertrand Mansion
Mamasam