On Thu, May 21, 2009 at 1:53 PM, DrunkenMonk <[email protected]> wrote:
>
> I'll try it, but it's strange... oh!

You can do this:

*: @key_form

And then put [session authkey form] on every form. Or we could even
make it a default value automatically. So forms always work. It's just
a security issue, so I haven't done it this way by default... It's
always a good idea to use authkeys when you have people writing to
pages they can't normally write to.

> in the function BOLTlog, the remapping of empty targets to "log.
> $pagelink" is done after a check for write permissions, which means
> the empty page is checked for write permissions instead of log.
> $pagelink.
>
> That suggests that this is in fact a bug regarding logs without a
> specified target.

You are correct. This is a bug. I just switched the two line. It's in
BOLTFlog though. Will be in next release...  Thanks for spotting this.
Keen eyes!

Cheers,
Dan

--~--~---------~--~----~------------~-------~--~----~
You received this message because you are subscribed to the Google Groups 
"BoltWire" group.
To post to this group, send email to [email protected]
To unsubscribe from this group, send email to 
[email protected]
For more options, visit this group at 
http://groups.google.com/group/boltwire?hl=en
-~----------~----~----~----~------~----~------~--~---

Reply via email to