Login  Register

Re: WebStaticServer serves everything

Posted by Herbert König on Oct 15, 2012; 3:09pm
URL: https://forum.world.st/WebStaticServer-serves-everything-tp4650059p4651270.html

Hi Janko,

seems useful to me because the images directory contains a lot of
sensitive data. At least in Squeak you can wget squeak.ini and know the
image name.

Cheers,

Herbert

Am 15.10.2012 16:58, schrieb Janko Mivšek:

> Hi Herbert,
>
> What if we change the default home directory for static serving to
> ./static instead? If this directory doesn't exist, nothing will be
> served. This will prevent browsing a home directory with image and
> .changes files, among others, which is certainly a security risk.
>
> Best regards
> Janko
>
>

_______________________________________________
Aida mailing list
[hidden email]
http://lists.aidaweb.si/mailman/listinfo/aida