Page MenuHomePhabricator

Allow insecure mail auth with "Reply-To" header
ClosedPublic

Authored by epriestley on Aug 21 2011, 7:06 PM.
Tags
None
Referenced Files
F19055704: D842.id.diff
Nov 28 2025, 6:07 PM
F19046474: D842.diff
Nov 27 2025, 10:45 AM
F18819323: D842.id.diff
Oct 22 2025, 5:41 AM
F18734657: D842.id.diff
Sep 30 2025, 10:58 PM
F18582734: D842.id.diff
Sep 11 2025, 8:53 AM
F18512280: D842.diff
Sep 5 2025, 7:49 AM
F18107048: D842.diff
Aug 10 2025, 11:37 PM
F18051460: D842.id1503.diff
Aug 3 2025, 11:23 PM
Subscribers

Details

Reviewers
aran
jungejason
tuomaspelkonen
Maniphest Tasks
Restricted Maniphest Task
Commits
rPd1134810d616: Allow insecure mail auth with "Reply-To" header
Summary

Quora wants to handle some moderation tasks with Phabricator, but want to lower the barrier to entry for the install and let moderators adopt it gradually. One request is to allow auth rules to be relaxed so we can auth based on Reply-To to make things easier. This is insecure if configured but not really a big deal and the patch isn't big or complicated.

Test Plan

Sent a test email with bogus "From" but valid "Reply-To". It was rejected with this setting off, and allowed with this setting on.

Diff Detail

Branch
replyto
Lint
Lint Passed
Unit
No Test Coverage