Changes between Initial Version and Version 1 of Ticket #4461
- Timestamp:
- Dec 27, 2006, 11:08:28 AM (17 years ago)
Legend:
- Unmodified
- Added
- Removed
- Modified
-
Ticket #4461 – Description
initial v1 1 1 I have a Trac site up that is hosting a couple of programs on the internet. After reviewing my apache access_log, I noticed a couple of strange items: 2 -POST http://mail.google.com/...3 -GET http://www.google.com/...4 -GET http://support.bmc.com/arsys/BackChannel/...5 -GET http://www.google.com/...2 * POST http://mail.google.com/... 3 * GET http://www.google.com/... 4 * GET http://support.bmc.com/arsys/BackChannel/... 5 * GET http://www.google.com/... 6 6 7 7 Anonymous users have the following access: 8 8 {{{ 9 9 Trac [x/trac/dvpfw]> permission list anonymous 10 10 … … 30 30 anonymous WIKI_VIEW 31 31 32 33 32 Available actions: 34 33 BROWSER_VIEW, CHANGESET_VIEW, CONFIG_VIEW, FILE_VIEW, LOG_VIEW, … … 39 38 TICKET_VIEW, TRAC_ADMIN, WIKI_ADMIN, WIKI_CREATE, WIKI_DELETE, 40 39 WIKI_MODIFY, WIKI_VIEW 41 40 }}} 42 41 43 42 Here are the full apache access_logs for the concern: 43 {{{ 44 44 x.x.x.x - - [26/Dec/2006:10:30:30 +0000] "GET /projects/dvpfw HTTP/1.1" 200 5851 45 45 x.x.x.x - - [26/Dec/2006:10:30:31 +0000] "GET /projects/dvpfw/chrome/common/css/wiki.css HTTP/1.1" 200 1533 … … 178 178 x.x.x.x - - [26/Dec/2006:10:49:52 +0000] "GET /projects/dvpfw/chrome/common/xml.png HTTP/1.1" 304 - 179 179 x.x.x.x - - [26/Dec/2006:10:49:58 +0000] "GET /projects/dvpfw/wiki HTTP/1.1" 200 5851 180 180 }}} 181 181 I since removed WIKI_CREATE and WIKI_MODIFY from anonymous. 182 182