Edgewall Software

Changes between Version 54 and Version 55 of TracIni


Ignore:
Timestamp:
Jan 11, 2006, 10:13:02 AM (18 years ago)
Author:
Christopher Lenz
Comment:

Document the new render_unsafe_content option.

Legend:

Unmodified
Added
Removed
Modified
  • TracIni

    v54 v55  
    5252== [attachment] ==
    5353|| `max_size` || Maximum allowed file size for ticket and wiki attachments ||
     54|| `render_unsafe_content` || Whether non-binary attachments should be rendered in the browser, or only made downloadable. Pretty much any text file may be interpreted as HTML by the browser, which allows a malicious user to attach a file containing cross-site scripting attacks. For public sites where anonymous users can create attachments, it is recommended to leave this option off (which is the default). ||
    5455
    5556== [notification] ==