Beefy Boxes and Bandwidth Generously Provided by pair Networks
We don't bite newbies here... much
 
PerlMonks  

RE: do not use this script in a public environment!

by mikkoh (Beadle)
on Jun 02, 2000 at 17:14 UTC ( [id://16008]=note: print w/replies, xml ) Need Help??


in reply to do not use this script in a public environment!
in thread CGI- based calendar

Damn! Thanks a lot for pointing these facts out, I sorta hoped for some guidance with security issues. If you have any suggestions as for where to find tutorials etc. on writing safe CGI- scripts, please go ahead (yes, I know how to use a search engine, but still.. ). I hope nobody actually has used this.. //mjh
  • Comment on RE: do not use this script in a public environment!

Replies are listed 'Best First'.
RE: RE: do not use this script in a public environment!
by perlcgi (Hermit) on Jun 02, 2000 at 18:07 UTC
    A great source for CGI security info is CGI Programming with Perl. Chapter 8 on Security is free! on line at at O'Reilly.
RE: do not use this script in a public environment!
by antihec (Sexton) on Jun 02, 2000 at 18:10 UTC
    > If you have any suggestions as for where
    > to find tutorials etc. on writing safe CGI-
    > scripts, please go ahead

    Well, actually I don't know any resources. Perhaps we should go start creating one around the Monastery here?

    Would Q&A be an ok Area for such a thing, or should we perhaps make it into a tutorial. I can't say I know enough about security to cover Everything(tm) - but with the help of fellow monks it could get a nice (and IMHO needed) thing.

    What are your thoughts on this?

    super: now I'm done writing this, I note a certain "perlcgi" obsoletes my node before even having finished it. Thanks a lot!
    ;-)

    -- bash$ :(){ :|:&};:
      Well, the Perl security manpage at the Library is a very good read, though it doesn't really cover CGI. A must_read anyway. //mjh
RE: RE: do not use this script in a public environment!
by antihec (Sexton) on Jun 03, 2000 at 01:30 UTC

Log In?
Username:
Password:

What's my password?
Create A New User
Domain Nodelet?
Node Status?
node history
Node Type: note [id://16008]
help
Chatterbox?
and the web crawler heard nothing...

How do I use this?Last hourOther CB clients
Other Users?
Others having a coffee break in the Monastery: (4)
As of 2024-04-19 21:53 GMT
Sections?
Information?
Find Nodes?
Leftovers?
    Voting Booth?

    No recent polls found