[Date Prev][Date Next][Thread Prev] [Thread Next][Date Index] [Thread Index]

RE: Taint mode [was: I Can Get To Admin...]


  • From: James S. Huggins \(Ringlink List\)  
  • Date: Sun, 17 Apr 2005 18:33:45 -0500

This is a quote from the Perl 'bible':

<quote>
On the more security-conscious sites, running all CGI scripts under the 
  -T flag isn't just a good idea: it's the law. We're not claiming that 
running in taint mode is sufficient to make your script secure. It's 
not, and it would take a whole book just to mention everything that 
would. But if you aren't executing your CGI scripts under taint mode, 
you've needlessly abandoned the strongest protection Perl can give you.
</quote>
===================================

Can you provide a URL?
(or is that a book?)


I'm preparing for a response from MY host and want to be able to cite a
source.


James S. Huggins


...


Follow-Ups from:
katyjoan
katyjoan
Gunnar Hjalmarsson

[Date Prev][Date Next][Thread Prev] [Thread Next][Date Index] [Thread Index]