From 8a4651e9d223de856ff085b329801998f95db138 Mon Sep 17 00:00:00 2001 From: Christophe Besson Date: Wed, 30 Sep 2026 12:37:31 +0200 Subject: fix(hub): the admin allow-list grants an account, not a username Each name in admin_usernames is pinned to the first active account seen holding it (admin_pins), so a name freed by a deletion grants nothing. Co-Authored-By: Claude Opus 5.5 --- packaging/conf/hub.toml.example | 5 ++++- 1 file changed, 4 insertions(+), 1 deletion(-) (limited to 'packaging/conf') diff --git a/packaging/conf/hub.toml.example b/packaging/conf/hub.toml.example index 640b2ce..850bee1 100644 --- a/packaging/conf/hub.toml.example +++ b/packaging/conf/hub.toml.example @@ -24,7 +24,10 @@ id = "hub.example.org" # chown meshbay:meshbay /etc/meshbay/hub_private.pem && chmod 600 it private_key_path = "/etc/meshbay/hub_private.pem" -# Accounts granted the admin role at creation. Everything else is set in the UI. +# Accounts granted the admin role. Each name is pinned to the first active +# account seen holding it, so a name freed by an account deletion and registered +# again by somebody else is not an admin. To hand a listed name to a new account: +# remove it, restart, list it again, restart. Everything else is set in the UI. admin_usernames = [] [database] -- cgit v1.2.3