cgi best practices (was: Re: http://openbsd.rt.fm/faq/faq10.html#httpdchroot)

2007-06-20 Thread Stephen Takacs
David Newman <[EMAIL PROTECTED]> wrote: > Anything else? "perldoc perlsec" has a lot of good advice. -- Stephen Takacs <[EMAIL PROTECTED]> http://perlguru.net/ 4149 FD56 D078 C988 9027 1EB4 04CC F80F 72CB 09DA

Re: cgi best practices (was: Re: http://openbsd.rt.fm/faq/faq10.html#httpdchroot)

2007-06-18 Thread Joachim Schipper
On Mon, Jun 18, 2007 at 07:57:50AM -0700, David Newman wrote: > -BEGIN PGP SIGNED MESSAGE- > Hash: SHA1 > > On 6/18/07 4:01 AM, Nick Holland wrote: > > >> I plan to implement cgi. > > > > which means you probably (though not certainly) have an app which > > requires the ability to write

cgi best practices (was: Re: http://openbsd.rt.fm/faq/faq10.html#httpdchroot)

2007-06-18 Thread David Newman
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 6/18/07 4:01 AM, Nick Holland wrote: >> I plan to implement cgi. > > which means you probably (though not certainly) have an app which > requires the ability to write to files. If that is true, that means > you have negated at least some of the b