[geeklog-devel] Geeklog Demo Updating

Oliver Spiesshofer oliver at spiesshofer.com
Wed Nov 14 20:59:55 EST 2007


BTW there is a "security issue" in GUS. If someone modifies the referer 
to be an invalid address such as

http:///

the site crashes on display of the referrers page. So in case you 
display that to the public anyone can disable your site.

Oliver

Web Site Master wrote:
> I always install GUS for all my Geeklog sites, a very important plugin for
> me and I can see other people wanting something similar. I believe it would
> be a good one for the demo site.  The only problem I see is I am not sure if
> Andy is around anymore and is still planning to support GUS.
>
> Tom
>
> -----Original Message-----
> From: geeklog-devel-bounces at lists.geeklog.net
> [mailto:geeklog-devel-bounces at lists.geeklog.net] On Behalf Of Michael
> Brusletten
> Sent: November-10-07 11:01 PM
> To: geeklog-devel at lists.geeklog.net
> Subject: [geeklog-devel] Geeklog Demo Updating
>
> I have been getting allot of comments and questions about what we can do to
> get new users to Geeklog and what we can do to the
> Geeklog Demo site to help make that happen.  There has been questions as to
> if more plugins can be installed and other features that
> are normally available on the normal Geeklog install.  I have talked this
> over with Dirk and we have decided that the best solution
> was to have a discussion as to what should be and what shouldn't be on the
> Demo site.  Reason I have brought this up to Dirk is
> because I am just the host provider and maintainer of the Demo site.
> However, like I said, Dirk and I have discussed it and we
> thought that this should be open for discussion to get better feedback.  Now
> keep in mind, any application/plugin that could be
> deemed a security risk where the root user could make changes to the
> application/plugin will not be favored vary high before making
> it available for use in the Demo Site: IE Ban plugin, Bad Behavior Plugin,
> etc etc because that would limit the access to potential
> new users.
>
> So if anyone has any ideas as to what else they would like to see on the
> site, please don't hessitate to speak up.  Or if there are
> other changes about the site that you think should be done, again, speak up.
> All questions and comment are welcomed and should be
> raised or commented on this thread, that way everyone has a chance to yea or
> nay the responses.
>
> Michael
>
>
>
> _______________________________________________
> geeklog-devel mailing list
> geeklog-devel at lists.geeklog.net
> http://eight.pairlist.net/mailman/listinfo/geeklog-devel
>
> __________ NOD32 2651 (20071110) Information __________
>
> This message was checked by NOD32 antivirus system.
> http://www.eset.com
>
>
> _______________________________________________
> geeklog-devel mailing list
> geeklog-devel at lists.geeklog.net
> http://eight.pairlist.net/mailman/listinfo/geeklog-devel
>
>
>   




More information about the geeklog-devel mailing list