Re: Protect
This WebDNA talk-list message is from 1997
It keeps the original formatting.
numero = 14256
interpreted = N
texte = >I think you should give some very serious thought to allowing ANY of>your users to create WebDNA templates on your site. My personal>opinion is that it is not worth the risk.People coming from UNIX and NT backgrounds don't normally have these concerns -- end-users are allowed to upload programs and execute them with no fear of malicious 'crossover', because the programs execute with lower security settings that only allow changes to stuff they have rights to change. MacOS was not designed for such an environment, and we realize this is a limitation that should be addressed.We are investigating ways of making WebDNA less susceptible to such issues. For now, you should all realize that anyone who can create templates has incredible power over your web server, and Bennie's Fear of God approach is probably the best for his situation.Grant Hulbert, V.P. Engineering | ==== eCommerce for the Rest of Us ====Pacific Coast Software | WebCatalog, WebMerchant11770 Bernardo Plaza Court | SiteEdit Pro, PhotoMasterSan Diego, CA 92128 | SiteGuard619/675-1106 Fax: 619/675-0372 | http://www.smithmicro.com
Associated Messages, from the most recent to the oldest:
>I think you should give some very serious thought to allowing ANY of>your users to create WebDNA templates on your site. My personal>opinion is that it is not worth the risk.People coming from UNIX and NT backgrounds don't normally have these concerns -- end-users are allowed to upload programs and execute them with no fear of malicious 'crossover', because the programs execute with lower security settings that only allow changes to stuff they have rights to change. MacOS was not designed for such an environment, and we realize this is a limitation that should be addressed.We are investigating ways of making WebDNA less susceptible to such issues. For now, you should all realize that anyone who can create templates has incredible power over your web server, and Bennie's Fear of God approach is probably the best for his situation.Grant Hulbert, V.P. Engineering | ==== eCommerce for the Rest of Us ====Pacific Coast Software | WebCatalog, WebMerchant11770 Bernardo Plaza Court | SiteEdit Pro, PhotoMasterSan Diego, CA 92128 | SiteGuard619/675-1106 Fax: 619/675-0372 | http://www.smithmicro.com
Grant Hulbert
DOWNLOAD WEBDNA NOW!
Top Articles:
Talk List
The WebDNA community talk-list is the best place to get some help: several hundred extremely proficient programmers with an excellent knowledge of WebDNA and an excellent spirit will deliver all the tips and tricks you can imagine...
Related Readings:
[WebDNA] An unknown error occured // Deadlock avoided (2011)
HELP WITH DATES (1997)
latest version? (1998)
SQLCONNECT (2005)
Custom Shipping Charges (1997)
LOOP problem (2007)
Ok here is a question? (1997)
WebCatalog2 Feature Feedback (1996)
Document Contains No Data! (1997)
Printing a final order (1997)
Cart Question (1998)
Make sure I understand this??? (1997)
A question on sub-categories (1997)
two unique banners on one page (1997)
ReturnRaw and redirect (1997)
E-mailer error codes (1997)
New [If] command question + New Feature Request (2000)
So many lookers, hey smith micro (2003)
Re2: frames & carts (1997)
Variables in a Prefernce File (2005)