aboutsummaryrefslogtreecommitdiffstats
path: root/packaging/conf
diff options
context:
space:
mode:
authorChristophe Besson <cbesson@gmail.com>2026-09-30 12:37:31 +0200
committerChristophe Besson <cbesson@gmail.com>2026-09-30 12:37:31 +0200
commit8a4651e9d223de856ff085b329801998f95db138 (patch)
tree6153ffaf46030613fa9024e85b9890c7fa979154 /packaging/conf
parent1684fcb64531eaf2e9bb8567ba4bdcbada6469d8 (diff)
downloadmeshbay-8a4651e9d223de856ff085b329801998f95db138.tar.gz
fix(hub): the admin allow-list grants an account, not a username
Each name in admin_usernames is pinned to the first active account seen holding it (admin_pins), so a name freed by a deletion grants nothing. Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com>
Diffstat (limited to 'packaging/conf')
-rw-r--r--packaging/conf/hub.toml.example5
1 files changed, 4 insertions, 1 deletions
diff --git a/packaging/conf/hub.toml.example b/packaging/conf/hub.toml.example
index 640b2ce..850bee1 100644
--- a/packaging/conf/hub.toml.example
+++ b/packaging/conf/hub.toml.example
@@ -24,7 +24,10 @@ id = "hub.example.org"
# chown meshbay:meshbay /etc/meshbay/hub_private.pem && chmod 600 it
private_key_path = "/etc/meshbay/hub_private.pem"
-# Accounts granted the admin role at creation. Everything else is set in the UI.
+# Accounts granted the admin role. Each name is pinned to the first active
+# account seen holding it, so a name freed by an account deletion and registered
+# again by somebody else is not an admin. To hand a listed name to a new account:
+# remove it, restart, list it again, restart. Everything else is set in the UI.
admin_usernames = []
[database]