)]}'
{"doc/source/admin/user-image-basic-auth.rst":[{"author":{"_account_id":10239,"name":"Dmitry Tantsur","email":"dtantsur@protonmail.com","username":"dtantsur"},"change_message_id":"715daa555a42b882d2bed00d7836f9610714d8d9","unresolved":false,"context_lines":[{"line_number":47,"context_line":"  ..."},{"line_number":48,"context_line":"  image_server_auth_strategy \u003d http_basic"},{"line_number":49,"context_line":"  image_server_user \u003d username"},{"line_number":50,"context_line":"  image_server_password \u003d password"},{"line_number":51,"context_line":"  ..."},{"line_number":52,"context_line":""},{"line_number":53,"context_line":"Restricting credential scope"}],"source_content_type":"text/x-rst","patch_set":3,"id":"832b8143_d2617110","line":50,"updated":"2026-08-24 09:43:47.000000000","message":"This example is now invalid and needs updating.\n\nAdditionally, let\u0027s make it a start-up failure to provide image_server_password without setting image_server_auth_hosts or image_server_auth_permit_unknown_hosts.","commit_id":"af53937ff9c9785b5bb18addc5148dac1a064e5d"},{"author":{"_account_id":10239,"name":"Dmitry Tantsur","email":"dtantsur@protonmail.com","username":"dtantsur"},"change_message_id":"7f3c6768b551a18de1a12a5527649e9ffce4ca13","unresolved":false,"context_lines":[{"line_number":51,"context_line":"  image_server_auth_hosts \u003d images.example.com,.internal"},{"line_number":52,"context_line":"  ..."},{"line_number":53,"context_line":""},{"line_number":54,"context_line":"As of the 2026.2 release, ``image_server_auth_permit_unknown_hosts`` defaults"},{"line_number":55,"context_line":"to ``False``. Configuring ``image_server_password`` without also configuring"},{"line_number":56,"context_line":"``image_server_auth_hosts`` (or explicitly setting"},{"line_number":57,"context_line":"``image_server_auth_permit_unknown_hosts`` to ``True``) is a configuration"}],"source_content_type":"text/x-rst","patch_set":4,"id":"520c9e3c_f95b752f","line":54,"updated":"2026-10-08 12:27:10.000000000","message":"This change missed 2026.2. Unless you plan to backport it, change this to 2027.1.","commit_id":"f4b77837db7adfc8bb9158e92e2d90deb4d8e924"}],"releasenotes/notes/auth-permit-unknown-hosts-default-256c794fa5f14f3f.yaml":[{"author":{"_account_id":10342,"name":"Jay Faulkner","display_name":"JayF","email":"jay@jvf.cc","username":"JayF","status":"youtube.com/@oss-gr / podcast.gr-oss.io"},"change_message_id":"c54e308b3f9688675878ed529611f5be18a1f6b0","unresolved":true,"context_lines":[{"line_number":16,"context_line":"    image server credentials from being silently sent to untrusted,"},{"line_number":17,"context_line":"    potentially user-supplied, hosts. See"},{"line_number":18,"context_line":"    `bug 2162816 \u003chttps://bugs.launchpad.net/ironic/+bug/2162816\u003e`_ for"},{"line_number":19,"context_line":"    details."}],"source_content_type":"text/x-yaml","patch_set":4,"id":"f74bba71_f2ddc42f","line":19,"updated":"2026-10-07 22:28:31.000000000","message":"If you rev this, you could link to OSSN-0110 (publishing tomorrow) as further justification for the change. Just for bonus not required 😉","commit_id":"f4b77837db7adfc8bb9158e92e2d90deb4d8e924"}]}
