Opened 10 years ago

Closed 9 years ago

#1441 closed enhancement (fixed)

Code Query before submitting is possible...

Reported by: j.cichon@… Owned by: Blackhex
Priority: normal Component: GuestbookPlugin
Severity: normal Keywords: security
Cc: Trac Release: 0.10



I will need to shutdown the guestbook because of internet spam (oh i hate those...) but anyway.

Maybe you can think of something like a random key that needs to be transmitted (and crypted to an image or something... Am not sure what might help. A cookie that needs to be resubmitted. Or a unique key that is in the page (sure that could be read...). Am image with some chars/nums that are hard to read via a script. But how to veryfy that after the submit?!

Maybe someone knows a clever solution that fits into the Plugin.

Attachments (0)

Change History (2)

comment:1 Changed 10 years ago by Blackhex

  • Status changed from new to assigned

I thought about this later but I have considered that this plugin is not used by anyone :-). Another solution I know is to append some field, hide it with CSS style and if it is filled it must be a bot. I read some article concerning possible solution to this problem so this is not problem. Anyway, IMHO the best solution would be to incorporate this plugin with SpamFilterPlugin, but I haven't study if it is possible, yet.

comment:2 Changed 9 years ago by Blackhex

  • Resolution set to fixed
  • Status changed from assigned to closed

r2653 introduced support for SpamFilterPlugin.

Add Comment

Modify Ticket

as closed The owner will remain Blackhex.
The resolution will be deleted. Next status will be 'reopened'.

E-mail address and user name can be saved in the Preferences.

Note: See TracTickets for help on using tickets.