Archive of UserLand's first discussion group, started October 5, 1998.

Re: Piking behind firewalls [In Progress]

Author:Nicholas Riley
Posted:5/10/2000; 3:50:39 PM
Topic:Piking behind firewalls
Msg #:17182 (In response to 17179)
Prev/Next:17181 / 17183

What might be a good thing to include into the hash is the IP address of the computer making the request. And only if the request from Pike comes from that computer, should it work. This may not be effective for load-balancing proxies which will use one of a number of outgoing addresses, but for most setups it should be OK. (There could be a switch to turn it off.)

In any case, I agree, the hash should be unique for each page, so a third party can't replay it to edit any page on the site.

--Nicholas


There are responses to this message:


This page was archived on 6/13/2001; 4:55:09 PM.

© Copyright 1998-2001 UserLand Software, Inc.