Posted by david on 16 May 2011 at 1:04 am
The bug was an issue with sessions expiring, which resulted in the session handler trying to create a new session, with the same session id (more like recreate the old one ;). I've had a fairly aggressive gc deleting old sessions, but once in a while there would be a strange error in my log file that didn't really tell me anything. The security enhancements yesterday added some intercepts that use the deny over allow methodology, including some privileged error messages. Because of those, I finally got a less cryptic error message and was able to track down the bug. Even if that wasn't the earlier bug, it's at least a dead bug :)


