ashokc schrieb:
I find that I am freely able to post to my production SOLR server, from any other host that can run the post command. So somebody can wipe out the whole index by posting a delete query.
Control this at the IP level, have your server listen on 127.0.0.1 or on a private subnet address. Michael Ludwig