[TYPO3-core] RFC: Enable pageNotFoundOnCHashError by default?

Martin Kutschker Martin.Kutschker at n0spam-blackbox.net
Wed Feb 28 12:46:03 CET 2007


Ernesto Baschny [cron IT] schrieb:
> Ingmar Schlecht wrote: on 28.02.2007 11:55:
> 
> 
>>>Preventing DoS attacks is also a security measure.
>>
>>That argument doesn't count as long as everyone can add ?no_cache=1 to a
> 
> This is true, and would be an issue I would also like to "fix". A
> setting where the admin can disable setting no_cache via the URL.

Or perhaps allow only certain hosts (use debug hosts for that?) or add a 
referrer check.

Masi


More information about the TYPO3-team-core mailing list