Brian, w/regards to resetting the session timeout, would this work? <cfif cgi.query_string contains "http://"> <cfset session.urltoken = ""> <cflocation url="http://www.mydomain.com"> </cfif>
Regards, Che -----Original Message----- From: Brian Kotek [mailto:[EMAIL PROTECTED] Sent: Friday, June 06, 2008 9:18 AM To: CF-Talk Subject: Re: Application.cfc question: Where would be the best place to put this code? OnRequestStart would seem to be a good place for it. You might also override the Session timeout (if you're using sessions) so that these spam requests don't create a large number of dead sessions. You can set the timeout to 5 seconds or something before you do the redirect. Regards, Brian On Fri, Jun 6, 2008 at 9:14 AM, Che Vilnonis <[EMAIL PROTECTED]> wrote: > Losers are hammering my site with spam in the urls. The first line is > what my url should look like. The second line is what I am getting > from the spammers. > > http://www.mydomain.com/index.cfm?type=Specialty&spec=110 > > http://www.mydomain.com/index.cfm?type=Specialty&spec=http%3A%2F%2Fwww > .north fans.ch%2Fforum%2Fadmin%2Fsettings%2Focoyo%2Fser%2F > > If I were to use the following code in Application.cfc, which function > would be the best place to put it? Right now, I was thinking of > placing it in onRequestStart. Any better ideas? > > The code would be simple an something like this: > > <cfif cgi.query_string contains "http://"> > <cflocation url="http://www.mydomain.com"> > <cfabort> > </cfif> > > > ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~| Adobe® ColdFusion® 8 software 8 is the most important and dramatic release to date Get the Free Trial http://ad.doubleclick.net/clk;192386516;25150098;k Archive: http://www.houseoffusion.com/groups/CF-Talk/message.cfm/messageid:306956 Subscription: http://www.houseoffusion.com/groups/CF-Talk/subscribe.cfm Unsubscribe: http://www.houseoffusion.com/cf_lists/unsubscribe.cfm?user=11502.10531.4

