Hi again, from my experience one thing to look out for is someone accessing
your site, copying a web page's html, change some values like quantity
fields and resaving the web page.  They then can attempt to access your
servlet with the changed web page.  This method allows the user to submit
the changed page and possibly corrupt the Servlets data for that person.

I was caught out by this and had to write code to check to see the validity
of the calling page.

Cheers

Marc

-----Original Message-----
From: Michel [mailto:[EMAIL PROTECTED]]
Sent: Tuesday, 8 August 2000 10:19 AM
To: [EMAIL PROTECTED]
Subject: Re: Ann: Servlet/Ecommerce demo


Thanks,

There was a problem with a link, and I was in the process of replacing a few
things.  I still have to fix a few button links, but aside from that, it
should work. But comments like yours are great.

> Michel the link is broken just shows a JRun page and none of the links
> work
> pb...
>
> Michel wrote:
> >
> > I have just put up a new version of the all-servlet e-commerce package.
The
> > bookstore only has three units, so only search for : "java", "xml" and
> > "html".
> >
> > The demo is at :
> >
> > http://www.compukat.arachsys.com/
> >
> > If the is an interest, I will roll-out the following add-ons:
> >
> > - java localisation;
> > - java-ssl;
> > - wap.
> >
> > Other ideas are welcome, as are comments and enquires on the use of the
> > software.
> >
> >
___________________________________________________________________________
> > To unsubscribe, send email to [EMAIL PROTECTED] and include in the
body
> > of the message "signoff SERVLET-INTEREST".
> >
> > Archives: http://archives.java.sun.com/archives/servlet-interest.html
> > Resources: http://java.sun.com/products/servlet/external-resources.html
> > LISTSERV Help: http://www.lsoft.com/manuals/user/user.html
> > .
>
> --
>
>
> --------------------------------------------------------------------------
------------
> Peter Blakeley
> [ coolcat.com.au ]
>
> At 40 you may be too old to be young but you are also too young to be
> old...;-})
> .
>
>
___________________________________________________________________________
> To unsubscribe, send email to [EMAIL PROTECTED] and include in the
body
> of the message "signoff SERVLET-INTEREST".
>
> Archives: http://archives.java.sun.com/archives/servlet-interest.html
> Resources: http://java.sun.com/products/servlet/external-resources.html
> LISTSERV Help: http://www.lsoft.com/manuals/user/user.html
>

___________________________________________________________________________
To unsubscribe, send email to [EMAIL PROTECTED] and include in the body
of the message "signoff SERVLET-INTEREST".

Archives: http://archives.java.sun.com/archives/servlet-interest.html
Resources: http://java.sun.com/products/servlet/external-resources.html
LISTSERV Help: http://www.lsoft.com/manuals/user/user.html

___________________________________________________________________________
To unsubscribe, send email to [EMAIL PROTECTED] and include in the body
of the message "signoff SERVLET-INTEREST".

Archives: http://archives.java.sun.com/archives/servlet-interest.html
Resources: http://java.sun.com/products/servlet/external-resources.html
LISTSERV Help: http://www.lsoft.com/manuals/user/user.html

Reply via email to