Opened 10 years ago

Closed 10 years ago

#1441 closed enhancement (fixed)

Code Query before submitting is possible...

Reported by: j.cichon@… Owned by: Radek Bartoň
Priority: normal Component: GuestbookPlugin
Severity: normal Keywords: security
Cc: Trac Release: 0.10



I will need to shutdown the guestbook because of internet spam (oh i hate those...) but anyway.

Maybe you can think of something like a random key that needs to be transmitted (and crypted to an image or something... Am not sure what might help. A cookie that needs to be resubmitted. Or a unique key that is in the page (sure that could be read...). Am image with some chars/nums that are hard to read via a script. But how to veryfy that after the submit?!

Maybe someone knows a clever solution that fits into the Plugin.

Attachments (0)

Change History (2)

comment:1 Changed 10 years ago by Radek Bartoň

Status: newassigned

I thought about this later but I have considered that this plugin is not used by anyone :-). Another solution I know is to append some field, hide it with CSS style and if it is filled it must be a bot. I read some article concerning possible solution to this problem so this is not problem. Anyway, IMHO the best solution would be to incorporate this plugin with SpamFilterPlugin, but I haven't study if it is possible, yet.

comment:2 Changed 10 years ago by Radek Bartoň

Resolution: fixed
Status: assignedclosed

r2653 introduced support for SpamFilterPlugin.

Modify Ticket

Change Properties
Set your email in Preferences
as closed The owner will remain Radek Bartoň.
The resolution will be deleted. Next status will be 'reopened'.

Add Comment

E-mail address and name can be saved in the Preferences.

Note: See TracTickets for help on using tickets.