Hi all,

This discussion got taken offline so to share with
everyone...it looks like a server side script will be
used. 

GregoryN: 
Yes, you sent me some very good information a while
back. Thanks again for that.  All good points
translated into layman's terms. Much appreciated!

So for anyone else trying to do this...use a
server-side script for all the reasons outlined below.
:-)

Cheers,
   Flashgrrl


--- GregoryN <[EMAIL PROTECTED]> wrote:

> Hello Flashgrrl,
> 
> I don't mind you being a girl, so just an answer to
> the point.
> 
> The matter is that placing some web-accessible file
> above the root directory
> of your Web Server is highly NOT recommended.
> 
> The claim that you're trying to do it "for security"
> is even not
> funny.
> 
> If you will manage to do it (e.g. place file above
> the root
> directory), an average hacker will have good chances
> to get full
> access/control to your web server, especially
> considering your level of
> expertise in security. Please not feel insulted
> about me mentioning this,
> it's just another field of expertise (where cost of
> mistake is high).
> 
> When I say "control over your web server" it means
> not only
> view/copy/edit/delete files, but also much more
> serious actions:
> running spamming programs under your name, for
> example.
> 
> 
> As to your attempt to protect your data, seems the
> only trustable
> solution(s) is use some kind of server-side proxy
> (script that will
> generate data file by request). I've already told
> you about this,
> right?
> 
> Easy way to check how "secure" is the solution you
> want to try is just
> see what files are in browser cache ;-).
> 
> 
>   
> 
> -- 
> Best regards,
>  GregoryN                        
> ================================
> http://GOusable.com
> Flash components development.
> Usability services.


Send instant messages to your online friends http://au.messenger.yahoo.com 
_______________________________________________
[email protected]
To change your subscription options or search the archive:
http://chattyfig.figleaf.com/mailman/listinfo/flashcoders

Brought to you by Fig Leaf Software
Premier Authorized Adobe Consulting and Training
http://www.figleaf.com
http://training.figleaf.com

Reply via email to