Re: Bug Report: proxy_auth -i case-insensitive matching broken in Squid 6.x
Andre Bolinhas <[email protected]> Fri, 6 Mar 2026 17:32:37 +0000
| Newsgroups | gmane.comp.web.squid.general |
|---|---|
| Message-ID | <[email protected]> |
This is a multi-part message in MIME format.
--===============0842104744444408845==
Content-Type: multipart/alternative;
boundary="------------e3JeV8IXT5bn2QPCUvjSJQ0S"
Content-Language: pt_PT
This is a multi-part message in MIME format.
--------------e3JeV8IXT5bn2QPCUvjSJQ0S
Content-Type: text/plain; charset=UTF-8; format=flowed
Content-Transfer-Encoding: 7bit
Hi
I can't create the pull request, returns the message "Pull request
creation failed. Validation failed: must be a collaborator"
On 2026-03-05 2:40 p.m., Alex Rousskov wrote:
> On 2026-03-04 17:44, Andre Bolinhas wrote:
>
>> The |proxy_auth -i| ACL (case-insensitive user matching) is broken in
>> Squid 6.x.
>
> Yes, there are several bugs/problems there. See a long comment above
> Acl::Option class declaration for how things are supposed to work.
>
> If you can volunteer to work on a fix, please post a pull request as
> discussed at https://wiki.squid-cache.org/MergeProcedure#pull-request
>
> In that pull request, instead of Option A and Option B, please do this:
>
> 1. Split ACLUserData::userDataNames into two sets: caseSensitiveNames
> and caseInsensitiveNames. Add tokens to the right set, depending on
> the current CaseInsensitive_ value. Search/print both sets as needed.
> Remove flags.case_insensitive.
>
> 2. Ignore any '-i' and '+i' tokens in ACLUserData::parse(), with a
> level-1 warning, instead of adding them to a set as if they were user
> names.
>
> 3. Check other ACLs that use lineOptions() for similar bugs.
>
>
> Thank you,
>
> Alex.
> P.S. I am sorry that our Bugzilla is still down, preventing you from
> using it to report this bug. We can continue to discuss this on GitHub.
>
--------------e3JeV8IXT5bn2QPCUvjSJQ0S
Content-Type: text/html; charset=UTF-8
Content-Transfer-Encoding: 7bit
<!DOCTYPE html>
<html data-lt-installed="true">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=UTF-8">
</head>
<body style="padding-bottom: 1px;">
<p>Hi<br>
I can't create the pull request, returns the message "Pull request
creation failed. Validation failed: must be a collaborator"</p>
<p><br>
</p>
<div class="moz-cite-prefix">On 2026-03-05 2:40 p.m., Alex Rousskov
wrote:<br>
</div>
<blockquote type="cite"
cite="mid:[email protected]">On
2026-03-04 17:44, Andre Bolinhas wrote:
<br>
<br>
<blockquote type="cite">The |proxy_auth -i| ACL (case-insensitive
user matching) is broken in Squid 6.x.
<br>
</blockquote>
<br>
Yes, there are several bugs/problems there. See a long comment
above Acl::Option class declaration for how things are supposed to
work.
<br>
<br>
If you can volunteer to work on a fix, please post a pull request
as discussed at
<a class="moz-txt-link-freetext" href="https://wiki.squid-cache.org/MergeProcedure#pull-request">https://wiki.squid-cache.org/MergeProcedure#pull-request</a>
<br>
<br>
In that pull request, instead of Option A and Option B, please do
this:
<br>
<br>
1. Split ACLUserData::userDataNames into two sets:
caseSensitiveNames and caseInsensitiveNames. Add tokens to the
right set, depending on the current CaseInsensitive_ value.
Search/print both sets as needed. Remove flags.case_insensitive.
<br>
<br>
2. Ignore any '-i' and '+i' tokens in ACLUserData::parse(), with a
level-1 warning, instead of adding them to a set as if they were
user names.
<br>
<br>
3. Check other ACLs that use lineOptions() for similar bugs.
<br>
<br>
<br>
Thank you,
<br>
<br>
Alex.
<br>
P.S. I am sorry that our Bugzilla is still down, preventing you
from using it to report this bug. We can continue to discuss this
on GitHub.
<br>
<br>
</blockquote>
</body>
<lt-container></lt-container>
</html>
--------------e3JeV8IXT5bn2QPCUvjSJQ0S--
--===============0842104744444408845==
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Disposition: inline
_______________________________________________
squid-users mailing list
[email protected]
https://lists.squid-cache.org/listinfo/squid-users
--===============0842104744444408845==--