[TYPO3-core] RFC: Enable pageNotFoundOnCHashError by default?
Martin Kutschker
Martin.Kutschker at n0spam-blackbox.net
Wed Feb 28 12:46:03 CET 2007
Ernesto Baschny [cron IT] schrieb:
> Ingmar Schlecht wrote: on 28.02.2007 11:55:
>
>
>>>Preventing DoS attacks is also a security measure.
>>
>>That argument doesn't count as long as everyone can add ?no_cache=1 to a
>
> This is true, and would be an issue I would also like to "fix". A
> setting where the admin can disable setting no_cache via the URL.
Or perhaps allow only certain hosts (use debug hosts for that?) or add a
referrer check.
Masi
More information about the TYPO3-team-core
mailing list