000326 T.E.Dickey wrote:
> 000325 LP wrote 
>> Occasionally, lynx sends referer field pointing to local files,
>> incl temporary files, which may be not good because of security
>> (remote user may find temp file name generated by lynx).
>> the referer: field should not be sent if previous page was not  http:// 
> there's the NO_FILE_REFERER setting to cover this -
> we could make a special case and suppress files
> Lynx happens to have opened for temporary use irregardless of that.

it would seem a good idea to do that,
assuming there can never be a good use for referer fields to local files.

-- 
========================,,============================================
SUPPORT     ___________//___,  Philip Webb : [EMAIL PROTECTED]
ELECTRIC   /] [] [] [] [] []|  Centre for Urban & Community Studies
TRANSIT    `-O----------O---'  University of Toronto

Reply via email to