diff options
Diffstat (limited to 'zarb-ml/mageia-sysadm/2011-June/003617.html')
-rw-r--r-- | zarb-ml/mageia-sysadm/2011-June/003617.html | 107 |
1 files changed, 107 insertions, 0 deletions
diff --git a/zarb-ml/mageia-sysadm/2011-June/003617.html b/zarb-ml/mageia-sysadm/2011-June/003617.html new file mode 100644 index 000000000..149069329 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2011-June/003617.html @@ -0,0 +1,107 @@ +<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 3.2//EN"> +<HTML> + <HEAD> + <TITLE> [Mageia-sysadm] Forum account + </TITLE> + <LINK REL="Index" HREF="index.html" > + <LINK REL="made" HREF="mailto:mageia-sysadm%40mageia.org?Subject=Re%3A%20%5BMageia-sysadm%5D%20Forum%20account&In-Reply-To=%3C1308056206.24304.204.camel%40akroma.ephaone.org%3E"> + <META NAME="robots" CONTENT="index,nofollow"> + <META http-equiv="Content-Type" content="text/html; charset=us-ascii"> + <LINK REL="Previous" HREF="003616.html"> + <LINK REL="Next" HREF="003624.html"> + </HEAD> + <BODY BGCOLOR="#ffffff"> + <H1>[Mageia-sysadm] Forum account</H1> + <B>Michael Scherer</B> + <A HREF="mailto:mageia-sysadm%40mageia.org?Subject=Re%3A%20%5BMageia-sysadm%5D%20Forum%20account&In-Reply-To=%3C1308056206.24304.204.camel%40akroma.ephaone.org%3E" + TITLE="[Mageia-sysadm] Forum account">misc at zarb.org + </A><BR> + <I>Tue Jun 14 14:56:46 CEST 2011</I> + <P><UL> + <LI>Previous message: <A HREF="003616.html">[Mageia-sysadm] Forum account +</A></li> + <LI>Next message: <A HREF="003624.html">[Mageia-sysadm] Forum account +</A></li> + <LI> <B>Messages sorted by:</B> + <a href="date.html#3617">[ date ]</a> + <a href="thread.html#3617">[ thread ]</a> + <a href="subject.html#3617">[ subject ]</a> + <a href="author.html#3617">[ author ]</a> + </LI> + </UL> + <HR> +<!--beginarticle--> +<PRE>Le mardi 14 juin 2011 à 14:06 +0200, Romain d'Alverny a écrit : + +><i> - having a scheme for identity to know where to redirect users +</I>><i> afterwise (not using the referrer, but having known keywords, like: +</I>><i> <A HREF="http://identity.mageia.org/register/?return_to=forums">http://identity.mageia.org/register/?return_to=forums</A> so identity +</I>><i> knows how to act/what to suggest after registration) +</I> +I see 2 solutions : +- keyword system ( ie, a keyword, and we lookup a table to redirect ) +- direct url + +The first one is likely more secure, but requires to keep track of the +table, and I think it would be better to not have yet another list to +manage. + +The second one requires us to do some filtering to avoid problem ( like +checking this is a proper url, that the url is only on our domain, and +avoid basic attack like using @, url escaping, etc ). + + +-- +Michael Scherer + +</PRE> + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +<!--endarticle--> + <HR> + <P><UL> + <!--threads--> + <LI>Previous message: <A HREF="003616.html">[Mageia-sysadm] Forum account +</A></li> + <LI>Next message: <A HREF="003624.html">[Mageia-sysadm] Forum account +</A></li> + <LI> <B>Messages sorted by:</B> + <a href="date.html#3617">[ date ]</a> + <a href="thread.html#3617">[ thread ]</a> + <a href="subject.html#3617">[ subject ]</a> + <a href="author.html#3617">[ author ]</a> + </LI> + </UL> + +<hr> +<a href="https://www.mageia.org/mailman/listinfo/mageia-sysadm">More information about the Mageia-sysadm +mailing list</a><br> +</body></html> |