Go to main content

Textpattern CMS support forum

You are not logged in. Register | Login | Help

#1 2007-04-09 03:05:13

mrdale
Member
From: Walla Walla
Registered: 2004-11-19
Posts: 2,215
Website

[contrib] Live TXP Examples Site

So I’m thinking pretty seriously about pushing forward with a TXP live examples site as described here , But I need some advice on logistics.

  1. How much and what kind of damage can a user with “publisher” rights do to a server from a TXP install?
  2. Should I set up an administered or a self register for new accounts?

Let’s discuss the specifics of how this site would work. Have at it?

Offline

#2 2007-04-09 04:18:05

jm
Plugin Author
From: Missoula, MT
Registered: 2005-11-27
Posts: 1,746
Website

Re: [contrib] Live TXP Examples Site

  1. A publisher could delete everyone’s accounts, so maybe a manging or copy editor.
  2. I think monitored is the way to go. Self-registered could result in a lot of abuse.

Last edited by jm (2007-04-09 04:18:42)

Offline

#3 2007-04-09 06:23:29

zem
Developer Emeritus
From: Melbourne, Australia
Registered: 2004-04-08
Posts: 2,579

Re: [contrib] Live TXP Examples Site

A publisher can run arbitrary PHP code and MySQL queries. They’ll have read access to at least some of the filesystem, and in some circumstances they might be able to modify or delete files.


Alex

Offline

#4 2007-04-09 16:11:17

mrdale
Member
From: Walla Walla
Registered: 2004-11-19
Posts: 2,215
Website

Re: [contrib] Live TXP Examples Site

Sounds like it would be best to do…

  1. an administered account system
  2. with managing editor accounts. plugins installed on request (or is that too draconian?)

Offline

#5 2007-04-09 21:01:18

TNT
Member
From: Rotterdam, Netherlands
Registered: 2006-01-06
Posts: 256
Website

Re: [contrib] Live TXP Examples Site

I think that would not be draconian. As other stated above, I think that’s the best way to prevent abuse.


Prrrrrrrr

Offline

#6 2007-07-20 07:18:22

iblastoff
Plugin Author
From: Toronto
Registered: 2006-06-11
Posts: 1,197
Website

Re: [contrib] Live TXP Examples Site

was this idea advanced any further? i’m interested in how others put together their txp sites!

Offline

Board footer

Powered by FluxBB