Advanced search  

News:

cpg1.5.48 Security release - upgrade mandatory!
The Coppermine development team is releasing a security update for Coppermine in order to counter a recently discovered vulnerability. It is important that all users who run version cpg1.5.46 or older update to this latest version as soon as possible.
[more]

Pages: [1]   Go Down

Author Topic: Unauthorized Access  (Read 4677 times)

0 Members and 1 Guest are viewing this topic.

Anne

  • Coppermine newbie
  • Offline Offline
  • Posts: 9
Unauthorized Access
« on: February 02, 2005, 11:04:21 am »

What would be the point of having required registration to view pics, if all one has to do is right click on a thumbnail (or view source) and erase the "thumb_" part of the URL? Is there any way around this?
Logged

Aditya Mooley

  • Dev Team member
  • Coppermine addict
  • ****
  • Offline Offline
  • Gender: Male
  • Posts: 781
    • My Sweet Home
Re: Unauthorized Access
« Reply #1 on: February 02, 2005, 01:58:55 pm »

That is why it is mod and not a core feature.  :D
Anyways if you put your pictures on the web, they will be accessible. You can only make it difficult.
Logged
--- "Its Nice 2 BE Important but its more Important 2 Be NICE" ---
Follow Coppermine on Twitter

Hein Traag

  • Dev Team member
  • Coppermine addict
  • ****
  • Country: nl
  • Offline Offline
  • Gender: Male
  • Posts: 2166
  • A, B, Cpg
    • Personal website - Spintires.nl
Re: Unauthorized Access
« Reply #2 on: February 02, 2005, 02:15:35 pm »

The only foolproof way is not putting your pictures online  :-\\

You have to accept that no matter how difficult you make it for unauthorized users to view the full size pics they will always find a way around your defences.
Logged

Tranz

  • Dev Team member
  • Coppermine addict
  • ****
  • Country: 00
  • Offline Offline
  • Gender: Female
  • Posts: 6149
Re: Unauthorized Access
« Reply #3 on: February 02, 2005, 08:15:06 pm »

If you can edit the .htaccess file, you can prevent direct access to files. So if someone tries to access an image by using its URL, you can redirect them elsewhere. The code is used along with the hotlink protection code.
Logged
Pages: [1]   Go Up
 

Page created in 0.018 seconds with 20 queries.