Re: math variable security [MEDIUM LONG]

This WebDNA talk-list message is from

2000


It keeps the original formatting.
numero = 33506
interpreted = N
texte = > It shouldn't too much imagination > to come up with ways to mess with the sites of almost anyone who has > posted example code on this list. You may not care if some user can > override your variable [IsHighSecurityUser] with something you hadn't > considered; I do and Smith Micro does.Exactly and I would too! But I don't care if they override:[mybubblegumchoice]and if I can derive some benefit from its non-secure state then thats my advantage.Net.data on the OS/400 doesn't let you override the show sql variable, but they do let you override plenty of non secure variables. With the option I can do whatever I want at no cost to your security.How does this point elude you?Additionally, with secure=f no old code needs to be changed regardless of whether you like it. Well with the exception of adding secure=f. Then at my leisure I can recode old sites or leave them alone, at my risk. This makes for a much easier transition and gives me time to read Programming Perl. I litterly have hundreds of sites, not just one to maintain. So major functionality shifts affect me greatly.I don't know if you were around before the shift from WebCat 1.3 to 2.0, but all of my sites moved from one to the next with almost no effort. It was a very inclusive upgrade. I was simply hoping and asking for the same consideration here.> Get over it; it's > not going to be fixed in the next version because it is not a problem > now. Thanks John, your psychiatric help is a joy and helpful. ------------------------------------------------------------- This message is sent to you because you are subscribed to the mailing list . To unsubscribe, E-mail to: To switch to the DIGEST mode, E-mail to Web Archive of this list is at: http://search.smithmicro.com/ Associated Messages, from the most recent to the oldest:

    
  1. Re: math variable security [MEDIUM LONG] (Bob Minor 2000)
  2. Re: math variable security [MEDIUM LONG] (John Peacock 2000)
  3. Re: math variable security [MEDIUM LONG] (Bob Minor 2000)
> It shouldn't too much imagination > to come up with ways to mess with the sites of almost anyone who has > posted example code on this list. You may not care if some user can > override your variable [IsHighSecurityUser] with something you hadn't > considered; I do and Smith Micro does.Exactly and I would too! But I don't care if they override:[mybubblegumchoice]and if I can derive some benefit from its non-secure state then thats my advantage.Net.data on the OS/400 doesn't let you override the show sql variable, but they do let you override plenty of non secure variables. With the option I can do whatever I want at no cost to your security.How does this point elude you?Additionally, with secure=f no old code needs to be changed regardless of whether you like it. Well with the exception of adding secure=f. Then at my leisure I can recode old sites or leave them alone, at my risk. This makes for a much easier transition and gives me time to read Programming Perl. I litterly have hundreds of sites, not just one to maintain. So major functionality shifts affect me greatly.I don't know if you were around before the shift from WebCat 1.3 to 2.0, but all of my sites moved from one to the next with almost no effort. It was a very inclusive upgrade. I was simply hoping and asking for the same consideration here.> Get over it; it's > not going to be fixed in the next version because it is not a problem > now. Thanks John, your psychiatric help is a joy and helpful. ------------------------------------------------------------- This message is sent to you because you are subscribed to the mailing list . To unsubscribe, E-mail to: To switch to the DIGEST mode, E-mail to Web Archive of this list is at: http://search.smithmicro.com/ Bob Minor

DOWNLOAD WEBDNA NOW!

Top Articles:

Talk List

The WebDNA community talk-list is the best place to get some help: several hundred extremely proficient programmers with an excellent knowledge of WebDNA and an excellent spirit will deliver all the tips and tricks you can imagine...

Related Readings:

[createfolder] & [deletefolder] (1997) Multiple catalog databases and showcart (1997) When is unitShipCost calculated? (1998) can we get string variables? (1998) Limiting [FoundItems] (2000) [WebDNA] WebDNA installers (2015) WebCatalog [FoundItems] Problem - AGAIN - (1997) error No such file (2001) WebCat2_Mac RETURNs in .db (1997) Wonderin' whats the way (1998) Shop till you drop dead on the avenue ... (1997) shipcost (1997) Re:trouble (1997) math on date? (1997) Applescript, WebDNA, and PDF (1997) Loss in form (1998) Dates! (1998) WebCatalog NT beta 18 problem (1997) service stop and restart (1997) Bug Report, maybe (1997)