External links in Trac through redirect page due to hide referer.
|Reported by:||veena||Owned by:||Christian Boos|
|Severity:||normal||Keywords:||redirect referer security|
If you have Trac installed on your (not yet public) hostname of your project then click on external links in your Trac shares referer to targeted page (maybe to your competitors).
It would be useful to have possibility to switch on "protect external links" feature for rendering text through wiki syntax. Then any external links will be targeted to local script for example: /env_name/redirect?url=…. where simple HTTP redirect to external page will be provided. That your referer = your project is keeping secret.