[TYPO3-core] RFC: #11368: ENABLE_INSTALL_TOOL file should be ignored if older than one hour

Ernesto Baschny [cron IT] ernst at cron-it.de
Tue Jun 23 12:00:11 CEST 2009


Michael Stucki wrote: on 23.06.2009 09:29:

>> This should still go into another RFC and when that one is present,
>> the security team would like to look into it, to verify the method
>> used doesn't introduce a breach :)
> 
> Altight, so I'll commit v2 of the patch and post a separate RFC afterwards.

But call the "unlink" with @ to avoid a warning if it fails, because I
guess many will simply create the file as "root" (on development
machines) to avoid it from being deleted by the webserver. :)

Cheers,
Ernesto


More information about the TYPO3-team-core mailing list