------------------------------------------------------------------------
A poll associated with this post was created, to vote and see the
results, please visit http://forums.slimdevices.com/showthread.php?t=79524
------------------------------------------------------------------------
Question: Are you interested in IR-over-IP?
    
- Yes, I'd like to have IRoIP.
- No, I don't care.
------------------------------------------------------------------------

peterw;558037 Wrote: 
> Read up on CSRF. You don't want your amp turning on, switching to AM
> radio, and going to full volume just because you open an email with a
> few IMG tags...

Thanks for the info Peter, I hadn't considered any security issues.  I
read your article about CSRF and it does sound scary (is this forum
affected?).  However, I don't think it's going to be an issue in this
instance because the attacker wouldn't know the IP address of the
Controller or the port that SqueezeIR is using.  I could use a pin
number that needs to be present in the url and must match the one
stored on the controller before it does anything, would that be
prudent?  I don't want to make things overly complex by reverting to
certificates/keys/https so I'd like to use a simple but effective
workaround.


-- 
indifference_engine
------------------------------------------------------------------------
indifference_engine's Profile: 
http://forums.slimdevices.com/member.php?userid=20698
View this thread: http://forums.slimdevices.com/showthread.php?t=79524

_______________________________________________
plugins mailing list
[email protected]
http://lists.slimdevices.com/mailman/listinfo/plugins

Reply via email to