Re: Adding a security concerned feature

2020-11-18 Thread Carles Pina i Estany
Hi, On Nov/16/2020, Carles Pina i Estany wrote: > Either way: I'd be happy to write a django check to make sure that > 'admin/' is not routed to admin. Regarding this check: this morning I've done a very preliminary/for fun draft to play with.

Re: Adding a security concerned feature

2020-11-18 Thread Tim Graham
I'm not convinced that a system check promoting security by obscurity adds much value. The original poster wrote "sometimes it can be a security concern." Maybe that's the case (how so?) but for most sites I would say it's not. On Wednesday, November 18, 2020 at 7:33:47 AM UTC-5 Carles Pina

Quick Filter in the Admin Sidebar

2020-11-18 Thread Maxim Milovanov
Hey guys, I've posted a ticket with a proposal to add a quick filtering feature to the sidebar. To see it in action just replace the content of nav_sidebar.html by this gist Does

Re: Adding a security concerned feature

2020-11-18 Thread Carles Pina i Estany
Hi, I wasn't convinced about changing the 'admin' path until recently. My reasons to change the path of 'admin' are: -A bit less likely to be affected by bugs like https://docs.djangoproject.com/en/3.1/releases/3.0.1/#cve-2019-19844-potential-account-hijack-via-password-reset-form : at least