ModernUO/Projects/UOContent.Tests/Tests/Network
Kamron Batman d59da47220 feat(network): bind the login auth id to its account and address
The auth id is about to stand in for the game login's password verify, so it
has to be a real bearer token. It was none of those things: drawn from
Utility.Random (a non-cryptographic PRNG), tied to nothing, and expiring only
when the 128-slot window filled, which on a quiet shard is never.

It is now a CSPRNG draw across the whole int range, bound to the account and
origin address that earned it, spent on presentation whether or not it vouches,
and dead after two minutes.

Co-Authored-By: Claude Opus 5 (1M context) <noreply@anthropic.com>
2026-08-08 00:14:39 -07:00
..
AutoDenylist feat(network): allowlist false-positive IPs, escalate on behavior (#2556) 2026-07-30 23:12:17 -07:00
Bans fix(crowdsec): send a payload LAPI accepts (500 on alerts, 401 on auth) (#2553) 2026-07-27 23:31:37 -07:00
Firewall feat(network): pluggable connection filters; file blocklist + contribute-first CrowdSec (#2542) 2026-07-25 11:59:37 -07:00
LoginAllowlist feat(network): allowlist false-positive IPs, escalate on behavior (#2556) 2026-07-30 23:12:17 -07:00
Packets feat(network): bind the login auth id to its account and address 2026-08-08 00:14:39 -07:00
BanExemptionsTests.cs feat(network): allowlist false-positive IPs, escalate on behavior (#2556) 2026-07-30 23:12:17 -07:00