If the robot runs in the context of a browser (as a plugin, say), then
using JS to populate href attributes becomes an irrelevancy: the robot
sees the DOM of the page as it would be rendered to the user.

Kees Nuyt's suggestion of a hidden link which disables the session
when followed strikes me as quite clever and worth trying.  I also
second Kees' suggestion of applying DoS fighting techniques.

Nico
--
_______________________________________________
fossil-users mailing list
[email protected]
http://lists.fossil-scm.org:8080/cgi-bin/mailman/listinfo/fossil-users

Reply via email to