Re: [Zope-dev] Session Errors

2003-03-15 Thread Chris McDonough
Thanks so much for helping to pin this down. Thanks for the observation that the error occurs more frequently when the timeout is small. This is likely because the timeout value directly impacts the frequency of "housekeeping" operations, where old buckets are garbage collected and new buckets ar

Re: [Zope-dev] How (in)secure is Zope?

2003-03-15 Thread Christian Tismer
Jamie Heilman wrote: [snipped many good things] Generally, the more software you install, the more open to attack you are. If you don't need it, don't run it, and don't install it. Some Zope products may open up more avenues of exploit than others, thats why the admin should audit them before i

Re: [Zope-dev] How (in)secure is Zope?

2003-03-15 Thread Jamie Heilman
Christian Tismer wrote: > If you compare Zope's bug paranoia with Python's, would you > say Zope is a bit less concerned, or there are not enough > people being concerned to get things resolved? I don't really know, I don't follow Python all that closely. Though due cgi.py's usage of tempfile.py