Date: Sat, 24 Aug 2013 18:58:05 +0000 From: Richard Barber <rbarber@comlink.net> To: "freebsd-cvsweb@FreeBSD.org" <freebsd-cvsweb@FreeBSD.org> Subject: Security Concerns Message-ID: <269A424A3CD1644685130A7E9A9F0882E604D17A@Exchange2010.Comlink.local>
next in thread | raw e-mail | index | archive | help
--_009_269A424A3CD1644685130A7E9A9F0882E604D17AExchange2010Com_ Content-Type: text/plain; charset="us-ascii" Content-Transfer-Encoding: quoted-printable Hello, We are using CVSweb as a front end for our RANCID platform. While poking a= round we noticed that if you hit cancel on the login prompt it still would = give you access to the webserver and all the available information on it. = Is there any suggestions on ways to secure this down so that the average us= er cannot view mission critical information? Regards, [Comlink Logo] Richard Barber Network Support Specialist (517) 679-7509 office rbarber@comlink.net<mailto:rbarber@comlink.net> 517-664-1900 517-324-9800 fax www.comlink.net<http://www.comlink.net/> 1515 Turf Lane, East Lansing, MI 48823 Connect With Us! [Comlink on Twitter]<http://twitter.com/TeamComlink> [Comlink on Facebook] = <http://www.facebook.com/pages/COMLINK/337614449666847> [Comlink on Linked= In] <http://www.linkedin.com/company/2702894> [Comlink on Google Plus] <ht= tps://plus.google.com/117115639945176142009> [Comlink on YouTube] <https:/= /www.youtube.com/user/TeamCOMLINK> --_009_269A424A3CD1644685130A7E9A9F0882E604D17AExchange2010Com_--
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?269A424A3CD1644685130A7E9A9F0882E604D17A>