Opened 8 years ago

Closed 7 years ago

#1441 closed enhancement (fixed)

Code Query before submitting is possible...

Reported by: j.cichon@… Owned by: Blackhex
Priority: normal Component: GuestbookPlugin
Severity: normal Keywords: security
Cc: Trac Release: 0.10



I will need to shutdown the guestbook because of internet spam (oh i hate those...) but anyway.

Maybe you can think of something like a random key that needs to be transmitted (and crypted to an image or something...
Am not sure what might help. A cookie that needs to be resubmitted. Or a unique key that is in the page (sure that could be read...). Am image with some chars/nums that are hard to read via a script. But how to veryfy that after the submit?!

Maybe someone knows a clever solution that fits into the Plugin.

Attachments (0)

Change History (2)

comment:1 Changed 8 years ago by Blackhex

  • Status changed from new to assigned

I thought about this later but I have considered that this plugin is not used by anyone :-). Another solution I know is to append some field, hide it with CSS style and if it is filled it must be a bot. I read some article concerning possible solution to this problem so this is not problem. Anyway, IMHO the best solution would be to incorporate this plugin with SpamFilterPlugin, but I haven't study if it is possible, yet.

comment:2 Changed 7 years ago by Blackhex

  • Resolution set to fixed
  • Status changed from assigned to closed

r2653 introduced support for SpamFilterPlugin.

Add Comment

Modify Ticket

as closed .
The resolution will be deleted. Next status will be 'reopened'.

E-mail address and user name can be saved in the Preferences.

Note: See TracTickets for help on using tickets.