Re: Bug Report: proxy_auth -i case-insensitive matching broken in Squid 6.x

Andre Bolinhas <[email protected]> Fri, 6 Mar 2026 17:32:37 +0000
Newsgroups gmane.comp.web.squid.general
Message-ID <[email protected]>
This is a multi-part message in MIME format.
--===============0842104744444408845==
Content-Type: multipart/alternative;
 boundary="------------e3JeV8IXT5bn2QPCUvjSJQ0S"
Content-Language: pt_PT

This is a multi-part message in MIME format.
--------------e3JeV8IXT5bn2QPCUvjSJQ0S
Content-Type: text/plain; charset=UTF-8; format=flowed
Content-Transfer-Encoding: 7bit

Hi
I can't create the pull request, returns the message "Pull request 
creation failed. Validation failed: must be a collaborator"


On 2026-03-05 2:40 p.m., Alex Rousskov wrote:
> On 2026-03-04 17:44, Andre Bolinhas wrote:
>
>> The |proxy_auth -i| ACL (case-insensitive user matching) is broken in 
>> Squid 6.x.
>
> Yes, there are several bugs/problems there. See a long comment above 
> Acl::Option class declaration for how things are supposed to work.
>
> If you can volunteer to work on a fix, please post a pull request as 
> discussed at https://wiki.squid-cache.org/MergeProcedure#pull-request
>
> In that pull request, instead of Option A and Option B, please do this:
>
> 1. Split ACLUserData::userDataNames into two sets: caseSensitiveNames 
> and caseInsensitiveNames. Add tokens to the right set, depending on 
> the current CaseInsensitive_ value. Search/print both sets as needed. 
> Remove flags.case_insensitive.
>
> 2. Ignore any '-i' and '+i' tokens in ACLUserData::parse(), with a 
> level-1 warning, instead of adding them to a set as if they were user 
> names.
>
> 3. Check other ACLs that use lineOptions() for similar bugs.
>
>
> Thank you,
>
> Alex.
> P.S. I am sorry that our Bugzilla is still down, preventing you from 
> using it to report this bug. We can continue to discuss this on GitHub.
>
--------------e3JeV8IXT5bn2QPCUvjSJQ0S
Content-Type: text/html; charset=UTF-8
Content-Transfer-Encoding: 7bit

<!DOCTYPE html>
<html data-lt-installed="true">
  <head>
    <meta http-equiv="Content-Type" content="text/html; charset=UTF-8">
  </head>
  <body style="padding-bottom: 1px;">
    <p>Hi<br>
      I can't create the pull request, returns the message "Pull request
      creation failed. Validation failed: must be a collaborator"</p>
    <p><br>
    </p>
    <div class="moz-cite-prefix">On 2026-03-05 2:40 p.m., Alex Rousskov
      wrote:<br>
    </div>
    <blockquote type="cite"
cite="mid:[email protected]">On
      2026-03-04 17:44, Andre Bolinhas wrote:
      <br>
      <br>
      <blockquote type="cite">The |proxy_auth -i| ACL (case-insensitive
        user matching) is broken in Squid 6.x.
        <br>
      </blockquote>
      <br>
      Yes, there are several bugs/problems there. See a long comment
      above Acl::Option class declaration for how things are supposed to
      work.
      <br>
      <br>
      If you can volunteer to work on a fix, please post a pull request
      as discussed at
      <a class="moz-txt-link-freetext" href="https://wiki.squid-cache.org/MergeProcedure#pull-request">https://wiki.squid-cache.org/MergeProcedure#pull-request</a>
      <br>
      <br>
      In that pull request, instead of Option A and Option B, please do
      this:
      <br>
      <br>
      1. Split ACLUserData::userDataNames into two sets:
      caseSensitiveNames and caseInsensitiveNames. Add tokens to the
      right set, depending on the current CaseInsensitive_ value.
      Search/print both sets as needed. Remove flags.case_insensitive.
      <br>
      <br>
      2. Ignore any '-i' and '+i' tokens in ACLUserData::parse(), with a
      level-1 warning, instead of adding them to a set as if they were
      user names.
      <br>
      <br>
      3. Check other ACLs that use lineOptions() for similar bugs.
      <br>
      <br>
      <br>
      Thank you,
      <br>
      <br>
      Alex.
      <br>
      P.S. I am sorry that our Bugzilla is still down, preventing you
      from using it to report this bug. We can continue to discuss this
      on GitHub.
      <br>
      <br>
    </blockquote>
  </body>
  <lt-container></lt-container>
</html>

--------------e3JeV8IXT5bn2QPCUvjSJQ0S--

--===============0842104744444408845==
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Disposition: inline

_______________________________________________
squid-users mailing list
[email protected]
https://lists.squid-cache.org/listinfo/squid-users

--===============0842104744444408845==--