https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=31699

--- Comment #42 from David Cook <dc...@prosentient.com.au> ---
(In reply to Tomás Cohen Arazi from comment #39)
> In my opinion, using OpacBaseURL as a fixed value (instead of an allow-list)
> is a design mistake because of what I mentioned above.

I was thinking about that a bit as well. With the OIDC server, they use an
allow list to great effect. 

I figure Koha would possibly benefit in a few different places from URL
redirect allow lists.

(In reply to Martin Renvoize from comment #40)
> We use SetEnvIf to overcome the OpacBaseUrl thing already here.. your
> already setting up a host to get the different domains..

But I also agree with this in terms of addressing the practical problem. 

(In reply to Tomás Cohen Arazi from comment #41)
> I'm really sorry, but my brain bandwidth is exhausted right now.

You've been doing so much! We all understand!

-- 
You are receiving this mail because:
You are watching all bug changes.
_______________________________________________
Koha-bugs mailing list
Koha-bugs@lists.koha-community.org
https://lists.koha-community.org/cgi-bin/mailman/listinfo/koha-bugs
website : http://www.koha-community.org/
git : http://git.koha-community.org/
bugs : http://bugs.koha-community.org/

Reply via email to