Re: ANNOUNCE: SquirrelMail 1.4.20 Released

Paul Lesniewski <[email protected]>
Newsgroups gmane.mail.squirrelmail.devel
Message-ID <[email protected]>
On Tue, Mar 23, 2010 at 6:54 AM, Ralf Hildebrandt
<[email protected]> wrote:
> * Paul Lesniewski <[email protected]>:
>
>> > With each login the security_tokens= line grows longer!
>>
>> Why do you say that is a problem?  It is designed as such.
>
> I had a user where the line grew SO long that PHP wouln't process it
> anymore. Once I deleted the config line it would all work again.

Thanks for the information.  That is certainly an active user.  Do you
know over how long a period of time the tokens were accumulated?  That
is, setting the expiry to shorter than the default (30 days) may
alleviate the issue if the user had been building the tokens up over
the course of several days or more.

>> automatically culled when they expire.  You can set more aggressive
>> culling by setting $max_token_age_days
>
> Where is that being set?

It's not unless you add it to config/config_local.php (or config.php
if you manage yours manually).  The default in the code for when it's
not set is 30 days.

>> to a small number (1 is fine, but keep in mind that if someone leaves,
>> for example, a compose form open for more than one day, then tries to
>> click Send, it will be rejected because the token expired) in
>> config/config_local.php.

-- 
Paul Lesniewski
SquirrelMail Team
Please support Open Source Software by donating to SquirrelMail!
http://squirrelmail.org/donate_paul_lesniewski.php

------------------------------------------------------------------------------
Download Intel&#174; Parallel Studio Eval
Try the new software tools for yourself. Speed compiling, find bugs
proactively, and fine-tune applications for parallel performance.
See why Intel Parallel Studio got high marks during beta.
http://p.sf.net/sfu/intel-sw-dev
-----
squirrelmail-devel mailing list
Posting guidelines: http://squirrelmail.org/postingguidelines
List address: [email protected]
List archives: http://news.gmane.org/gmane.mail.squirrelmail.devel
List info (subscribe/unsubscribe/change options): https://lists.sourceforge.net/lists/listinfo/squirrelmail-devel
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.