<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Authlogic: after the initial hype</title>
	<atom:link href="http://pathfindersoftware.com/2009/09/authlogic-after-the-initial-hype/feed/" rel="self" type="application/rss+xml" />
	<link>http://pathfindersoftware.com/2009/09/authlogic-after-the-initial-hype/</link>
	<description>The Fastest Way to Launch Successful Software</description>
	<lastBuildDate>Thu, 19 Jan 2012 16:36:03 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
	<item>
		<title>By: Keenan Brock</title>
		<link>http://pathfindersoftware.com/2009/09/authlogic-after-the-initial-hype/#comment-9782</link>
		<dc:creator>Keenan Brock</dc:creator>
		<pubDate>Wed, 23 Dec 2009 16:24:13 +0000</pubDate>
		<guid isPermaLink="false">http://www.pathf.com/blogs/?p=4190#comment-9782</guid>
		<description>Thank you.

Users on our site can click around before confirming the email. So the confirmation link typically expired by the time the user visited their email box. This will definitely fix our problem.

One thing I did notice:

If a user requests 2 confirm email messages, each email has a different token (and a different link). The problems is gmail will show these in a thread. The link in the first message (which is invalid) is displayed and the link in the second message (which is valid) is obscured.

So we are sending out the same token on all emails.
We are invalidating the token after the user confirms rather than before the user requests the confirmation email.

Thanks Again,
K</description>
		<content:encoded><![CDATA[<p>Thank you.</p>
<p>Users on our site can click around before confirming the email. So the confirmation link typically expired by the time the user visited their email box. This will definitely fix our problem.</p>
<p>One thing I did notice:</p>
<p>If a user requests 2 confirm email messages, each email has a different token (and a different link). The problems is gmail will show these in a thread. The link in the first message (which is invalid) is displayed and the link in the second message (which is valid) is obscured.</p>
<p>So we are sending out the same token on all emails.<br />
We are invalidating the token after the user confirms rather than before the user requests the confirmation email.</p>
<p>Thanks Again,<br />
K</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Adrien Lamothe</title>
		<link>http://pathfindersoftware.com/2009/09/authlogic-after-the-initial-hype/#comment-9781</link>
		<dc:creator>Adrien Lamothe</dc:creator>
		<pubDate>Thu, 08 Oct 2009 22:59:44 +0000</pubDate>
		<guid isPermaLink="false">http://www.pathf.com/blogs/?p=4190#comment-9781</guid>
		<description>You wouldn&#039;t happen to know why authlogic&#039;s password reset doesn&#039;t include the reset link in the email body? This one is really messing with me. I&#039;ve been diving into Rails to get away from all the sloppiness of other environments and am finding that at as far as Rails plugins go things are almost as bad as the environments I&#039;m trying to get away from :-(

Much thanks.</description>
		<content:encoded><![CDATA[<p>You wouldn&#8217;t happen to know why authlogic&#8217;s password reset doesn&#8217;t include the reset link in the email body? This one is really messing with me. I&#8217;ve been diving into Rails to get away from all the sloppiness of other environments and am finding that at as far as Rails plugins go things are almost as bad as the environments I&#8217;m trying to get away from <img src='http://pathfindersoftware.com/wp-includes/images/smilies/icon_sad.gif' alt=':-(' class='wp-smiley' /> </p>
<p>Much thanks.</p>
]]></content:encoded>
	</item>
</channel>
</rss>

<!-- Performance optimized by W3 Total Cache. Learn more: http://www.w3-edge.com/wordpress-plugins/

Minified using disk: basic (User agent is rejected)
Page Caching using memcached (User agent is rejected)

Served from: pathfindersoftware.com @ 2012-02-10 01:32:06 -->
