Antville Project

Thursday, 21. November 2002

Auto-Save Help

When I'm creating a story, I often have been "timed out" and logged out without warning. When I finally go to "save" I am told I must log in and when I do all of my unsaved story is gone. Is there an auto-save feature I might activate? Or at least some warning to save before I'm kicked off?

link (no comments) 
 

cookies and security-issues

to fix a security-hole in antville we had to change the cookie-creation and -handling three days ago. as some of you already noticed the "remember me"-feature seems to work differently. this is because of our fix, and unfortunatly it seems to be the only possible solution:

from now on the "remember me"-feature will only work for those who have a static ip-address, for most modem/adsl-users it won't resp. just as long as they they keep their ip-address. this is because we're now using the client-ip as part of the key that is stored in one of the cookies used by the "remember me"-feature.

those who have antville installed somewhere should update their installations (the fix is already in cvs, in both the main- and the need_for_speed-branch). to give you a brief description: before it was possible for a weblog-owner to retrieve the "remember-me"-cookies of visitors and use them to log in as a differnt user. this has never happened (afaik), but of course we had to fix the hole.

sorry for the inconvenience.

link (3 comments
 

server-maintenance

first of all: sorry for the outage of antville.org between 0:15 and 1:00. i had to do alot of maintenance tonight, and it wasn't possible without switching antville off. here's what i did:

  • switched to apache 1.3.26 (compiled from sources), restructured apache-config. the home-directory of apache has changed too (and more important: the config is not anymore where it used to be on suse-systems)
  • compiled and installed mod_jk 1.2 from sources (for some hidden reasons apache was pretty unwilling to start with the precompiled binary ...)
  • cleaned and optimized accesslog-table in database
  • switched to helma-snapshot compiled on 20021120

and btw.: anybody knows why the f*** j2sdk1.4.1 needs a hidden directory /etc/.java/? obviously it leads to timeouts in image-upload if this directory is not existing (thanks kris for your report, but you deleted your story before i was able to comment ;-)

so now for the more interesting things: due to the switch to a new helma-version the following problems are solved:

  1. there are no problems anymore with spaces encoded as '+' in urls.
  2. since hns changed the gif-encoder used in helma (big thanks!) the problems with uploading gifs (some of them would throw a lengthy error) are gone too.

if any of the above problems still occur please report them here.

link (11 comments
 

The Antville Server Fund has been a great success. Thanks to everybody who contributed!
online for 8549 Days
last updated: 1/4/11, 10:22 AM
status
Youre not logged in ... Login
menu
November 2002
SunMonTueWedThuFriSat
12
3456789
10111213141516
17181920212223
24252627282930
OctoberDecember
recent
zfuture's house here is zfuture's
house
by zfuture (7/31/03, 2:59 AM)
i understand your concerns however,
i hardly can think of a solution. certainly, if the...
by tobi (7/29/03, 9:47 AM)
Found several more similar sites
listed This is getting to be quite a concern to...
by cobalt123 (7/27/03, 7:56 PM)
Second Post Alert on Referrer
bug livecatz I put this into "help" and now here:...
by cobalt123 (7/26/03, 7:14 PM)
well it's not easy to
find from here, anyway. think we should include a link,...
by tobi (7/24/03, 11:25 AM)
So finally I found
the helma Bugzilla - stupid me.
by mdornseif (7/24/03, 10:28 AM)
clock not that it's particularly
earthshattering but the antclock is running slow by about 15...
by kohlehydrat (7/23/03, 8:25 PM)
but blogosphere.us isn't can't really
be rated as spam can it?
by kohlehydrat (7/23/03, 8:08 PM)
More referrer spam www.webfrost.com
by Irene (7/23/03, 7:55 PM)
How to log skin names
I accessed to console?? Hi, I would like to know...
by winson (7/23/03, 4:12 PM)

Click here to get an XML version of this weblog.

Made with Antville
powered by
Helma Object Publisher