[geeklog-devel] Geeklog Demo Updating

Oliver Spiesshofer oliver at spiesshofer.com
Wed Nov 14 20:59:55 EST 2007


BTW there is a "security issue" in GUS. If someone modifies the referer
to be an invalid address such as

http:///

the site crashes on display of the referrers page. So in case you
display that to the public anyone can disable your site.

Oliver

Web Site Master wrote:

> I always install GUS for all my Geeklog sites, a very important plugin for

> me and I can see other people wanting something similar. I believe it would

> be a good one for the demo site. The only problem I see is I am not sure if

> Andy is around anymore and is still planning to support GUS.

>

> Tom

>

> -----Original Message-----

> From: geeklog-devel-bounces at lists.geeklog.net

> [mailto:geeklog-devel-bounces at lists.geeklog.net] On Behalf Of Michael

> Brusletten

> Sent: November-10-07 11:01 PM

> To: geeklog-devel at lists.geeklog.net

> Subject: [geeklog-devel] Geeklog Demo Updating

>

> I have been getting allot of comments and questions about what we can do to

> get new users to Geeklog and what we can do to the

> Geeklog Demo site to help make that happen. There has been questions as to

> if more plugins can be installed and other features that

> are normally available on the normal Geeklog install. I have talked this

> over with Dirk and we have decided that the best solution

> was to have a discussion as to what should be and what shouldn't be on the

> Demo site. Reason I have brought this up to Dirk is

> because I am just the host provider and maintainer of the Demo site.

> However, like I said, Dirk and I have discussed it and we

> thought that this should be open for discussion to get better feedback. Now

> keep in mind, any application/plugin that could be

> deemed a security risk where the root user could make changes to the

> application/plugin will not be favored vary high before making

> it available for use in the Demo Site: IE Ban plugin, Bad Behavior Plugin,

> etc etc because that would limit the access to potential

> new users.

>

> So if anyone has any ideas as to what else they would like to see on the

> site, please don't hessitate to speak up. Or if there are

> other changes about the site that you think should be done, again, speak up.

> All questions and comment are welcomed and should be

> raised or commented on this thread, that way everyone has a chance to yea or

> nay the responses.

>

> Michael

>

>

>

> _______________________________________________

> geeklog-devel mailing list

> geeklog-devel at lists.geeklog.net

> http://eight.pairlist.net/mailman/listinfo/geeklog-devel

>

> __________ NOD32 2651 (20071110) Information __________

>

> This message was checked by NOD32 antivirus system.

> http://www.eset.com

>

>

> _______________________________________________

> geeklog-devel mailing list

> geeklog-devel at lists.geeklog.net

> http://eight.pairlist.net/mailman/listinfo/geeklog-devel

>

>

>





More information about the geeklog-devel mailing list