home
products
contribute
download
documentation
forum
Home
Forums
New posts
Search forums
What's new
New posts
All posts
Latest activity
Members
Registered members
Current visitors
Donate
Log in
Register
What's new
Search
Search
Search titles only
By:
New posts
Search forums
Search titles only
By:
Menu
Log in
Register
Navigation
Install the app
Install
More options
Contact us
Close Menu
Forums
MediaPortal 1
MediaPortal 1 Talk
Server and HTPC webconsole
Contact us
RSS
JavaScript is disabled. For a better experience, please enable JavaScript in your browser before proceeding.
You are using an out of date browser. It may not display this or other websites correctly.
You should upgrade or use an
alternative browser
.
Reply to thread
Message
<blockquote data-quote="joz" data-source="post: 402024" data-attributes="member: 70244"><p><img src="data:image/gif;base64,R0lGODlhAQABAIAAAAAAAP///yH5BAEAAAAALAAAAAABAAEAAAIBRAA7" class="smilie smilie--sprite smilie--sprite8" alt=":D" title="Big Grin :D" loading="lazy" data-shortname=":D" /> jsimmons, I will!</p><p></p><p>First things first, this already runs on my machine for 2 weeks straight now (it started off smaller of course) and have not had any serious issues yet(knock on wood).</p><p>I will keep running this most likely for another couple of months before ever considering a release. This way I can kinda see how it keeps up before exposing any (ignorent) user to possible threads. Any alpha testers can apply if they like, this will be by request (read PM) basis on alpha, public on beta.</p><p>If it comes to a release I will make sure people know about the possible consequences.</p><p></p><p>A release will need an installer, really. No experience with that yet. If a installer is created it can have selections for turning off all shell access for example which will already elimanate a huge possible thread.</p><p></p><p>p.s.</p><p>I develop commercial (somteimes big, at least for netherlands) websites, it's my job, so I'm supposed to know what I'm doing, which I think I am (but who isn't thinking that of themselves <img src="data:image/gif;base64,R0lGODlhAQABAIAAAAAAAP///yH5BAEAAAAALAAAAAABAAEAAAIBRAA7" class="smilie smilie--sprite smilie--sprite2" alt=";)" title="Wink ;)" loading="lazy" data-shortname=";)" />).</p><p>The injection bit that got pointed out by jsimmons is like natural to me. It's just automatic and never had issues with any of the websites I developed, except when I just started I created a JS injection vulnarability (which I also fixed and cleared upon first time notice).</p><p>However I know much less about how to configure your webserver safely. I'm on the fast track atm learning about that. As it is always with the small personal projects I do, I pick a subject I wanna learn. This seems to contribute.</p><p></p><p>btw <img src="data:image/gif;base64,R0lGODlhAQABAIAAAAAAAP///yH5BAEAAAAALAAAAAABAAEAAAIBRAA7" class="smilie smilie--sprite smilie--sprite8" alt=":D" title="Big Grin :D" loading="lazy" data-shortname=":D" /> for the response so far. I know security is the first thing popping up in your tech savy brains out there but some suggestions/features are welcome too <img src="data:image/gif;base64,R0lGODlhAQABAIAAAAAAAP///yH5BAEAAAAALAAAAAABAAEAAAIBRAA7" class="smilie smilie--sprite smilie--sprite2" alt=";)" title="Wink ;)" loading="lazy" data-shortname=";)" /></p></blockquote><p></p>
[QUOTE="joz, post: 402024, member: 70244"] :thx: jsimmons, I will! First things first, this already runs on my machine for 2 weeks straight now (it started off smaller of course) and have not had any serious issues yet(knock on wood). I will keep running this most likely for another couple of months before ever considering a release. This way I can kinda see how it keeps up before exposing any (ignorent) user to possible threads. Any alpha testers can apply if they like, this will be by request (read PM) basis on alpha, public on beta. If it comes to a release I will make sure people know about the possible consequences. A release will need an installer, really. No experience with that yet. If a installer is created it can have selections for turning off all shell access for example which will already elimanate a huge possible thread. p.s. I develop commercial (somteimes big, at least for netherlands) websites, it's my job, so I'm supposed to know what I'm doing, which I think I am (but who isn't thinking that of themselves ;)). The injection bit that got pointed out by jsimmons is like natural to me. It's just automatic and never had issues with any of the websites I developed, except when I just started I created a JS injection vulnarability (which I also fixed and cleared upon first time notice). However I know much less about how to configure your webserver safely. I'm on the fast track atm learning about that. As it is always with the small personal projects I do, I pick a subject I wanna learn. This seems to contribute. btw :thx: for the response so far. I know security is the first thing popping up in your tech savy brains out there but some suggestions/features are welcome too ;) [/QUOTE]
Insert quotes…
Verification
Post reply
Forums
MediaPortal 1
MediaPortal 1 Talk
Server and HTPC webconsole
Contact us
RSS
Top
Bottom