Re: Perl Authorization handler called before authentication handler

Lathan Bidwell <[email protected]>
Newsgroups gmane.comp.apache.mod-perl
Message-ID <CAOqPvqhYKvEe73EQrj3ss_bHMTxA_od=0ve-qwwEj12qCpPtug@mail.gmail.com>
1) I am sure that the subroutine is called, because I have warn statements
in each subroutine. I can see in the log that authorization24 is called
before authentication24.

2) The url I've been testing is /services/jacl/members/hi.html

@DirectoryMatch: hm, I suppose it might be slightly faster, but I think its
probably better to make it more obvious as to what the config is doing.
This module is used to be able to set up members / subscription areas
fairly dynamically on the site.

On Fri, Sep 12, 2014 at 12:42 PM, André Warnier <[email protected]> wrote:

> Lathan Bidwell wrote:
>
>> I have looked all around apache's documentation on how to upgrade from 2.2
>> to 2.4, but they don't include much about using PerlAddAuthzProvider or
>> PerlAuthenHandler.
>>
>> I have this config section:
>>
>> PerlAddAuthzProvider membersuser Application::User::Members->authorize24
>>
>> <DirectoryMatch ^.*/members/>
>>         DirectoryIndex disabled
>>         PerlAuthenHandler       Application::User::Members->
>> authenticate24
>>         #PerlAuthenHandler      Application::User::Members::
>> authenticate24
>>
>>         AuthType        Application::User::Members
>>         AuthName        "Members"
>>
>>         Require membersuser testing123
>> </DirectoryMatch>
>>
>>
>> But for some reason, my authorize24 subroutine is being called before my
>> authenticate24 subroutine.
>>
>> I have simplified those 2 subroutines down to printing debugging info to
>> the error log, (the authen sub sets $r->user('testing')), but I cannot
>> figure out why the handlers are called in the wrong order.
>>
>>
> Not a solution, just a couple of questions, to make sure that we are
> seeing the issue correctly :
>
> 1) /is/ the authenticate24 subroutine ever called ? Can you see that ?
> 2) what is the exact request URL used, when you encounter this issue ?
>
> And then a tentative suggestion :
>
> <DirectoryMatch ^.*/members/>
> can be probably be replaced with the equivalent
> <DirectoryMatch /members/>
> which should be a little bit more efficient.
>
>
>
> --
> BEGIN-ANTISPAM-VOTING-LINKS
> ------------------------------------------------------
>
> Teach CanIt if this mail (ID 0aMOgHFdt) is spam:
> Spam:        http://www.andrews.edu/spam/b.php?i=0aMOgHFdt&m=
> 7dc0ed3625f6&c=s
> Not spam:    http://www.andrews.edu/spam/b.php?i=0aMOgHFdt&m=
> 7dc0ed3625f6&c=n
> Forget vote: http://www.andrews.edu/spam/b.php?i=0aMOgHFdt&m=
> 7dc0ed3625f6&c=f
> ------------------------------------------------------
> END-ANTISPAM-VOTING-LINKS
>
>
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.