[Typo3-dev] Security: limit extension available to install

Jochen Weiland J_dot_WEILAND_at_WEB_dot_DE at nospam.comm
Tue Jan 11 10:13:42 CET 2005


Mathias Schreiber [wmdb] wrote:

> White list is the only "save" thing.
> 

One idea is to provide a default white list to start with, i.e. all 
extensions that are positively rated by the upcoming event in Copenhagen.
With hundred of extensions available such a default/sample white list 
would be a good starting point and you could configure your own set of 
extensions like:

+ default white list
+ other extensions that I want/need
- any extensions that I want to block

Jochen




More information about the TYPO3-dev mailing list