>>>>> "IM" == Ilya Martynov <[EMAIL PROTECTED]> writes:

IM> BTW I think clear documentation of how to properly construct search
IM> filters and/or do escaping is *very* important from security
IM> standpoint.  Having done code review of code written by my co-workers
IM> I've noticed several LDAP injection vulnerabilities.  Of course it is
IM> attributed to their ignorance.  But I suspect partially it can be
IM> attributed to the fact docs does cover "the right way" to build search
                              ^^^^^^^^
IM> filters.

Sorry, I meant "doesn't".

-- 
Ilya Martynov,  [EMAIL PROTECTED]
CTO IPonWEB (UK) Ltd
Quality Perl Programming and Unix Support
UK managed @ offshore prices - http://www.iponweb.net
Personal website - http://martynov.org

Reply via email to