Thu Apr 25 20:36:35 2024
EVENTS
 FREE
SOFTWARE
INSTITUTE

POLITICS
JOBS
MEMBERS'
CORNER

MAILING
LIST

NYLXS Mailing Lists and Archives
NYLXS Members have a lot to say and share but we don't keep many secrets. Join the Hangout Mailing List and say your peice.

DATE 2013-03-01

HANGOUT

2024-04-25 | 2024-03-25 | 2024-02-25 | 2024-01-25 | 2023-12-25 | 2023-11-25 | 2023-10-25 | 2023-09-25 | 2023-08-25 | 2023-07-25 | 2023-06-25 | 2023-05-25 | 2023-04-25 | 2023-03-25 | 2023-02-25 | 2023-01-25 | 2022-12-25 | 2022-11-25 | 2022-10-25 | 2022-09-25 | 2022-08-25 | 2022-07-25 | 2022-06-25 | 2022-05-25 | 2022-04-25 | 2022-03-25 | 2022-02-25 | 2022-01-25 | 2021-12-25 | 2021-11-25 | 2021-10-25 | 2021-09-25 | 2021-08-25 | 2021-07-25 | 2021-06-25 | 2021-05-25 | 2021-04-25 | 2021-03-25 | 2021-02-25 | 2021-01-25 | 2020-12-25 | 2020-11-25 | 2020-10-25 | 2020-09-25 | 2020-08-25 | 2020-07-25 | 2020-06-25 | 2020-05-25 | 2020-04-25 | 2020-03-25 | 2020-02-25 | 2020-01-25 | 2019-12-25 | 2019-11-25 | 2019-10-25 | 2019-09-25 | 2019-08-25 | 2019-07-25 | 2019-06-25 | 2019-05-25 | 2019-04-25 | 2019-03-25 | 2019-02-25 | 2019-01-25 | 2018-12-25 | 2018-11-25 | 2018-10-25 | 2018-09-25 | 2018-08-25 | 2018-07-25 | 2018-06-25 | 2018-05-25 | 2018-04-25 | 2018-03-25 | 2018-02-25 | 2018-01-25 | 2017-12-25 | 2017-11-25 | 2017-10-25 | 2017-09-25 | 2017-08-25 | 2017-07-25 | 2017-06-25 | 2017-05-25 | 2017-04-25 | 2017-03-25 | 2017-02-25 | 2017-01-25 | 2016-12-25 | 2016-11-25 | 2016-10-25 | 2016-09-25 | 2016-08-25 | 2016-07-25 | 2016-06-25 | 2016-05-25 | 2016-04-25 | 2016-03-25 | 2016-02-25 | 2016-01-25 | 2015-12-25 | 2015-11-25 | 2015-10-25 | 2015-09-25 | 2015-08-25 | 2015-07-25 | 2015-06-25 | 2015-05-25 | 2015-04-25 | 2015-03-25 | 2015-02-25 | 2015-01-25 | 2014-12-25 | 2014-11-25 | 2014-10-25 | 2014-09-25 | 2014-08-25 | 2014-07-25 | 2014-06-25 | 2014-05-25 | 2014-04-25 | 2014-03-25 | 2014-02-25 | 2014-01-25 | 2013-12-25 | 2013-11-25 | 2013-10-25 | 2013-09-25 | 2013-08-25 | 2013-07-25 | 2013-06-25 | 2013-05-25 | 2013-04-25 | 2013-03-25 | 2013-02-25 | 2013-01-25 | 2012-12-25 | 2012-11-25 | 2012-10-25 | 2012-09-25 | 2012-08-25 | 2012-07-25 | 2012-06-25 | 2012-05-25 | 2012-04-25 | 2012-03-25 | 2012-02-25 | 2012-01-25 | 2011-12-25 | 2011-11-25 | 2011-10-25 | 2011-09-25 | 2011-08-25 | 2011-07-25 | 2011-06-25 | 2011-05-25 | 2011-04-25 | 2011-03-25 | 2011-02-25 | 2011-01-25 | 2010-12-25 | 2010-11-25 | 2010-10-25 | 2010-09-25 | 2010-08-25 | 2010-07-25 | 2010-06-25 | 2010-05-25 | 2010-04-25 | 2010-03-25 | 2010-02-25 | 2010-01-25 | 2009-12-25 | 2009-11-25 | 2009-10-25 | 2009-09-25 | 2009-08-25 | 2009-07-25 | 2009-06-25 | 2009-05-25 | 2009-04-25 | 2009-03-25 | 2009-02-25 | 2009-01-25 | 2008-12-25 | 2008-11-25 | 2008-10-25 | 2008-09-25 | 2008-08-25 | 2008-07-25 | 2008-06-25 | 2008-05-25 | 2008-04-25 | 2008-03-25 | 2008-02-25 | 2008-01-25 | 2007-12-25 | 2007-11-25 | 2007-10-25 | 2007-09-25 | 2007-08-25 | 2007-07-25 | 2007-06-25 | 2007-05-25 | 2007-04-25 | 2007-03-25 | 2007-02-25 | 2007-01-25 | 2006-12-25 | 2006-11-25 | 2006-10-25 | 2006-09-25 | 2006-08-25 | 2006-07-25 | 2006-06-25 | 2006-05-25 | 2006-04-25 | 2006-03-25 | 2006-02-25 | 2006-01-25 | 2005-12-25 | 2005-11-25 | 2005-10-25 | 2005-09-25 | 2005-08-25 | 2005-07-25 | 2005-06-25 | 2005-05-25 | 2005-04-25 | 2005-03-25 | 2005-02-25 | 2005-01-25 | 2004-12-25 | 2004-11-25 | 2004-10-25 | 2004-09-25 | 2004-08-25 | 2004-07-25 | 2004-06-25 | 2004-05-25 | 2004-04-25 | 2004-03-25 | 2004-02-25 | 2004-01-25 | 2003-12-25 | 2003-11-25 | 2003-10-25 | 2003-09-25 | 2003-08-25 | 2003-07-25 | 2003-06-25 | 2003-05-25 | 2003-04-25 | 2003-03-25 | 2003-02-25 | 2003-01-25 | 2002-12-25 | 2002-11-25 | 2002-10-25 | 2002-09-25 | 2002-08-25 | 2002-07-25 | 2002-06-25 | 2002-05-25 | 2002-04-25 | 2002-03-25 | 2002-02-25 | 2002-01-25 | 2001-12-25 | 2001-11-25 | 2001-10-25 | 2001-09-25 | 2001-08-25 | 2001-07-25 | 2001-06-25 | 2001-05-25 | 2001-04-25 | 2001-03-25 | 2001-02-25 | 2001-01-25 | 2000-12-25 | 2000-11-25 | 2000-10-25 | 2000-09-25 | 2000-08-25 | 2000-07-25 | 2000-06-25 | 2000-05-25 | 2000-04-25 | 2000-03-25 | 2000-02-25 | 2000-01-25 | 1999-12-25

Key: Value:

Key: Value:

MESSAGE
DATE 2013-03-22
FROM Elfen Magix
SUBJECT Re: [NYLXS - HANGOUT] yabb
From owner-hangout-outgoing-at-mrbrklyn.com Fri Mar 22 14:44:19 2013
Return-Path:
X-Original-To: archive-at-mrbrklyn.com
Delivered-To: archive-at-mrbrklyn.com
Received: by mrbrklyn.com (Postfix)
id 6B318161CAA; Fri, 22 Mar 2013 14:44:19 -0400 (EDT)
Delivered-To: hangout-outgoing-at-mrbrklyn.com
Received: by mrbrklyn.com (Postfix, from userid 28)
id 589B8161CAC; Fri, 22 Mar 2013 14:44:19 -0400 (EDT)
Delivered-To: hangout-at-mrbrklyn.com
Received: from nm13-vm4.bullet.mail.ne1.yahoo.com (nm13-vm4.bullet.mail.ne1.yahoo.com [98.138.91.173])
by mrbrklyn.com (Postfix) with ESMTP id 837BC161CAA
for ; Fri, 22 Mar 2013 14:44:18 -0400 (EDT)
Received: from [98.138.90.49] by nm13.bullet.mail.ne1.yahoo.com with NNFMP; 22 Mar 2013 18:44:17 -0000
Received: from [98.138.89.246] by tm2.bullet.mail.ne1.yahoo.com with NNFMP; 22 Mar 2013 18:44:17 -0000
Received: from [127.0.0.1] by omp1060.mail.ne1.yahoo.com with NNFMP; 22 Mar 2013 18:44:17 -0000
X-Yahoo-Newman-Property: ymail-3
X-Yahoo-Newman-Id: 278646.19278.bm-at-omp1060.mail.ne1.yahoo.com
Received: (qmail 76615 invoked by uid 60001); 22 Mar 2013 18:44:17 -0000
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=yahoo.com; s=s1024; t=1363977857; bh=A68/BW7ZY7nKNSg6CFfmH9ioV7ViY/iJ2b6hNwTtE5c=; h=X-YMail-OSG:Received:X-Rocket-MIMEInfo:X-Mailer:Message-ID:Date:From:Subject:To:In-Reply-To:MIME-Version:Content-Type; b=x6ouoPvhNYveV3CzGNJFpG9ttE1xVPPElksctO7/rI8fwHNU0Asf9AD61TqZPwPdGFnJIPKnBADmo8lAoRvuFY0NuvH0fu6HDHv/VdPABy3f3kC5lH+x4LL24xZ8LubKQOojcErZqoQMU3W7mWYEKu0eCGLQ2NW8uGCbikKNm4k=
DomainKey-Signature:a=rsa-sha1; q=dns; c=nofws;
s=s1024; d=yahoo.com;
h=X-YMail-OSG:Received:X-Rocket-MIMEInfo:X-Mailer:Message-ID:Date:From:Subject:To:In-Reply-To:MIME-Version:Content-Type;
b=fCruoKIzuwZgXjijokotMF/QXP3UWCcSriRJ7afYyAhJ8Uibu1/9ICOlG6VdM0vh4M7IMfvc4RG51wL4gSecLoPPFLdQuUMJwnXULptHFbfG272rnwL1RsYcyrTdaVLNpOqjgy68bDSrMfSJINOQxo8iwDf3FI2HdYgw8ZITdkQ=;
X-YMail-OSG: SE_RR2oVM1loa_jHKqD04e_D28C_3nf1qbNlCgJzJJEAq.Y
KPFILGQbgIktmWAc19qCasIGZevBnN_7lQfHSo04HqZ4Db5ZpdMF9kwYa_Dz
G_jp7HdXCVxHLxiont0PRbeu0L_YMJB0my0YXHI8BQuoVYThOsttO1mfWH_Y
pk2rhYvdYnKGHXDUA6BnNQFi0XDB5yfDYibF_LaaRy8XFe76OuP_mZDDHiL4
wQ1d9A9LLt7mgQ8Flvs6ePOX_ilShCIxnatS63911MSKKey54Alo74jZTDL1
KU5_snEXJEs7mO1IuTjaXny7H30iif4uo8Yor0FzI_l313QQMepgAg_vd5tD
52qV5ZzR1YJ0QnzWFTb_MiIJehB0siLmqLYO2i_suwhrPJMeE5Cnjk4y.8Km
oaIuBV1k2D3PZXuuN37Z5ESK1Sy7uw.drgxR6vy29lFjQt57mojBmL8Q4R9R
bSX2DnNadk5qv0fYbpCik_ZyQ9.ZKG27ugLR3vGj5j.uGHkeBoLDHCdCyAf8
GxueKa_RUj.5LcDPSR7e2wGWF9HBxmgXFV5yXv1fJzhuSfettSuUdFeGwGT7
3Fp48AGhC2.RJOuFkk6xn25bn96cNz.1c6l._F3ugiipCPTdtXACrVOYF4DX
dlS604hv50F1CXl0rSHMjx_vkVn5KMuquoJwon_mBC4MsxjwLwIfh4ODXG1J
lk87JmExbrhGaIRNUMjbjOGNWgSM6imHx7wJMB6LNF2Jo98V.Vh.feZ96Opf
ZMXpLF1SQb9.hVbOBVYooX9GNBPMYcVaPQzjZgnOUF4loYpI4zZ2BJKYZ8qP
3ST4ip_X1e6xAqConzDBS93VD
Received: from [65.88.88.63] by web120103.mail.ne1.yahoo.com via HTTP; Fri, 22 Mar 2013 11:44:16 PDT
X-Rocket-MIMEInfo: 002.001,SWYgeW91IHdhbnQgTW9kIFJld3JpdGUgUnVsZXMsIHlvdSBhcmUgZ29pbmcgdG8gbmVlZCB0byBrbm93IHdoZXJlIHRoZSBmaWxlcyBhcmUuDQpUbyBzb3J0IHRoaXMgY3JhemluZXNzIG91dCB5b3UgaGF2ZSB0byBmaWd1cmUgd2hlcmUgdGhlIGJvYXJkIGFyZS4gVGhhdCBpcyBpbiBjZ2ktYmluL0JvYXJkcy5odHRwOi8vd3d3LmhvbmRvc2Fja2V0dC5jb20veWFiYi9ZYUJCLnBsP2JvYXJkPXNpZ25wb3N0DQpCdXQgdGhlIHRocmVhZHMgYXJlIGxpc3RlZCBieSBkYXRlIGNyZWF0ZWQgaW4gZWFjaCBib2FyZCABMAEBAQE-
X-Mailer: YahooMailClassic/15.1.7 YahooMailWebService/0.8.138.524
Message-ID: <1363977856.71992.YahooMailClassic-at-web120103.mail.ne1.yahoo.com>
Date: Fri, 22 Mar 2013 11:44:16 -0700 (PDT)
From: Elfen Magix
Subject: Re: [NYLXS - HANGOUT] yabb
To: hangout-at-mrbrklyn.com
In-Reply-To: <20130320150344.GA2137-at-panix.com>
MIME-Version: 1.0
Content-Type: multipart/alternative; boundary="-955686164-1605772490-1363977856=:71992"
Sender: owner-hangout-at-mrbrklyn.com
Precedence: bulk
Reply-To: hangout-at-mrbrklyn.com

---955686164-1605772490-1363977856=:71992
Content-Type: text/plain; charset=iso-8859-1
Content-Transfer-Encoding: quoted-printable

If you want Mod Rewrite Rules, you are going to need to know where the file=
s are.
To sort this craziness out you have to figure where the board are. That is =
in cgi-bin/Boards.http://www.hondosackett.com/yabb/YaBB.pl?board=3Dsignpost
But the threads are listed by date created in each board file in the Boards=
Directory. Adding to the insanity, the threads are in their own directory/=
folder called "Messages" and there are two files to go with it - the .txt f=
ile which is the actual thread and the .ctb which is an index of that file =
(who started it, when, what permissions are allowed, etc.) and keeps track =
of the thread added posts.
Within Yabb, all this is figured out with several perl files, including Yab=
b.pl.
To do a simple rewrite mod for YaBB, you need to convert from the cgi-bin t=
o without it.I'm guessing it would be:RewriteRule ^cgi-bin/YaBB.pl$ YaBB=
/$Dont count on it for it may look like it, it is not the answer.See: http:=
//httpd.apache.org/docs/2.0/misc/rewriteguide.htmland: http://httpd.apache.=
org/docs/current/mod/mod_rewrite.html- and search 'cgi' within the document=
s.
--- On Wed, 3/20/13, Ruben Safir wrote:

From: Ruben Safir
Subject: Re: [NYLXS - HANGOUT] yabb
To: hangout-at-mrbrklyn.com
Date: Wednesday, March 20, 2013, 11:03 AM

On Wed, Mar 20, 2013 at 09:38:30AM -0400, David Sugar wrote:
> Isn't this what the existing apache uri rewrite rules/module is also norm=
ally
> used for, to do translations between uri paths and cgi arguments?=A0 I re=
call
> mediawiki can use rewrite rules to normalize document paths to feed the c=
ore
> app.=A0 Why do they have/want to do it differently than anyone else has?
> Doing it as a kind of redirect just seems bizaare to me.=A0 But I have he=
ard
> equally bizzare things recently, like people insisting that file managers
> should now only present case insensitive file ordering, when of course th=
e
> native file system is and always have been case sensitive...

I'd have to look at the specifics of what your refering to, but while in
the Pharmacy, the essential difference would be regular expression
mapping wbich would be a fairly large security hole for a standard
setup, or any set up with usage of an .htaccess file.=A0 It would allow
for anyone to inject anything at all into cgi as a get statement.=20


Ruben


>=20
> Ruben Safir wrote:
>=20
> > This is an example of something that is just a PIA to churn through,
> > partly because these idiots are splicing an ISII crapolla fix into
> > their "documentations", and secondly because assume your sitting on
> > someone elses webserver, rather than your own, and thirdly because=20
> > they believe that your apache set up has a rather rare and somewhat
> > insecure module installed for RedirectMatchUrl, and then ...
> >=20
> > their last instruction fails to identify what the hell the code is
> > for!=A0 Is it httpd.conf?=A0 Is it perl code to drop into the applicati=
on?
> >=20
> > The who concept is to redirect a static uri like
> >=20
> > http://www.myuri.com/messages/some_numbers_as_arguments
> >=20
> > to their cgi engine automaticaly, to be translated to look
> > internally as something like this:
> >=20
> >=A0=20
> > http://www.myuri.com/cgi-bin/yabb.pl?some_numbers_as_arguments
> >=20
> >=20
> > It would be just simpler to drop down to mod_perl and add it as a
> > script into the apache calls under the URI of=20
> >=20
> > http://www.myuri.com/messages/=20
> >=20
> > and be done with it....
> >=20
> > The whole discussion of symbolic links to directories is just confussin=
g
> > the issue.=A0 There doesn't need to be any real directory when the serv=
er
> > is picking up that uri and handling it entirely within the apache
> > engine.
> >=20
> > Ruben
> >=20

---955686164-1605772490-1363977856=:71992
Content-Type: text/html; charset=iso-8859-1
Content-Transfer-Encoding: quoted-printable

table>
---955686164-1605772490-1363977856=:71992--

---955686164-1605772490-1363977856=:71992
Content-Type: text/plain; charset=iso-8859-1
Content-Transfer-Encoding: quoted-printable

If you want Mod Rewrite Rules, you are going to need to know where the file=
s are.
To sort this craziness out you have to figure where the board are. That is =
in cgi-bin/Boards.http://www.hondosackett.com/yabb/YaBB.pl?board=3Dsignpost
But the threads are listed by date created in each board file in the Boards=
Directory. Adding to the insanity, the threads are in their own directory/=
folder called "Messages" and there are two files to go with it - the .txt f=
ile which is the actual thread and the .ctb which is an index of that file =
(who started it, when, what permissions are allowed, etc.) and keeps track =
of the thread added posts.
Within Yabb, all this is figured out with several perl files, including Yab=
b.pl.
To do a simple rewrite mod for YaBB, you need to convert from the cgi-bin t=
o without it.I'm guessing it would be:RewriteRule ^cgi-bin/YaBB.pl$ YaBB=
/$Dont count on it for it may look like it, it is not the answer.See: http:=
//httpd.apache.org/docs/2.0/misc/rewriteguide.htmland: http://httpd.apache.=
org/docs/current/mod/mod_rewrite.html- and search 'cgi' within the document=
s.
--- On Wed, 3/20/13, Ruben Safir wrote:

From: Ruben Safir
Subject: Re: [NYLXS - HANGOUT] yabb
To: hangout-at-mrbrklyn.com
Date: Wednesday, March 20, 2013, 11:03 AM

On Wed, Mar 20, 2013 at 09:38:30AM -0400, David Sugar wrote:
> Isn't this what the existing apache uri rewrite rules/module is also norm=
ally
> used for, to do translations between uri paths and cgi arguments?=A0 I re=
call
> mediawiki can use rewrite rules to normalize document paths to feed the c=
ore
> app.=A0 Why do they have/want to do it differently than anyone else has?
> Doing it as a kind of redirect just seems bizaare to me.=A0 But I have he=
ard
> equally bizzare things recently, like people insisting that file managers
> should now only present case insensitive file ordering, when of course th=
e
> native file system is and always have been case sensitive...

I'd have to look at the specifics of what your refering to, but while in
the Pharmacy, the essential difference would be regular expression
mapping wbich would be a fairly large security hole for a standard
setup, or any set up with usage of an .htaccess file.=A0 It would allow
for anyone to inject anything at all into cgi as a get statement.=20


Ruben


>=20
> Ruben Safir wrote:
>=20
> > This is an example of something that is just a PIA to churn through,
> > partly because these idiots are splicing an ISII crapolla fix into
> > their "documentations", and secondly because assume your sitting on
> > someone elses webserver, rather than your own, and thirdly because=20
> > they believe that your apache set up has a rather rare and somewhat
> > insecure module installed for RedirectMatchUrl, and then ...
> >=20
> > their last instruction fails to identify what the hell the code is
> > for!=A0 Is it httpd.conf?=A0 Is it perl code to drop into the applicati=
on?
> >=20
> > The who concept is to redirect a static uri like
> >=20
> > http://www.myuri.com/messages/some_numbers_as_arguments
> >=20
> > to their cgi engine automaticaly, to be translated to look
> > internally as something like this:
> >=20
> >=A0=20
> > http://www.myuri.com/cgi-bin/yabb.pl?some_numbers_as_arguments
> >=20
> >=20
> > It would be just simpler to drop down to mod_perl and add it as a
> > script into the apache calls under the URI of=20
> >=20
> > http://www.myuri.com/messages/=20
> >=20
> > and be done with it....
> >=20
> > The whole discussion of symbolic links to directories is just confussin=
g
> > the issue.=A0 There doesn't need to be any real directory when the serv=
er
> > is picking up that uri and handling it entirely within the apache
> > engine.
> >=20
> > Ruben
> >=20

---955686164-1605772490-1363977856=:71992
Content-Type: text/html; charset=iso-8859-1
Content-Transfer-Encoding: quoted-printable

top" style=3D"font: inherit;">If you want Mod Rewrite Rules, you are going =
to need to know where the files are.

To sort this crazin=
ess out you have to figure where the board are. That is in cgi-bin/Boards.<=
/div>
http://www.hondosackett.com/yabb/YaBB.pl?board=3Dsignpost
iv>
But the threads are listed by date created in each board =
file in the Boards Directory. Adding to the insanity, the threads are in th=
eir own directory/folder called "Messages" and there are two files to go wi=
th it - the .txt file which is the actual thread and the .ctb which is an i=
ndex of that file (who started it, when, what permissions are allowed, etc.=
) and keeps track of the thread added posts.

Withi=
n Yabb, all this is figured out with several perl files, including Yabb.pl.=

To do a simple rewrite mod for YaBB, you need to
convert from the cgi-bin to without it.
I'm guessing it would be=
:
RewriteRule   ^cgi-bin/YaBB.pl$  YaBB/$
Dont cou=
nt on it for it may look like it, it is not the answer.
See: http=
://httpd.apache.org/docs/2.0/misc/rewriteguide.html
and: http://h=
ttpd.apache.org/docs/current/mod/mod_rewrite.html
- and search 'c=
gi' within the documents.

--- On Wed, 3/2=
0/13, Ruben Safir <mrbrklyn-at-panix.com>
wrote:
te style=3D"border-left: 2px solid rgb(16, 16, 255); margin-left: 5px; padd=
ing-left: 5px;">
From: Ruben Safir <mrbrklyn-at-panix.com>
Subject=
: Re: [NYLXS - HANGOUT] yabb
To: hangout-at-mrbrklyn.com
Date: Wednesday=
, March 20, 2013, 11:03 AM

On Wed, Mar 20, =
2013 at 09:38:30AM -0400, David Sugar wrote:
> Isn't this what the ex=
isting apache uri rewrite rules/module is also normally
> used
for, to do translations between uri paths and cgi arguments?  I recal=
l
> mediawiki can use rewrite rules to normalize document paths to fe=
ed the core
> app.  Why do they have/want to do it differently t=
han anyone else has?
> Doing it as a kind of redirect just seems biza=
are to me.  But I have heard
> equally bizzare things recently, =
like people insisting that file managers
> should now only present ca=
se insensitive file ordering, when of course the
> native file system=
is and always have been case sensitive...

I'd have to look at the s=
pecifics of what your refering to, but while in
the Pharmacy, the essent=
ial difference would be regular expression
mapping wbich would be a fair=
ly large security hole for a standard
setup, or any set up with usage of=
an .htaccess file.  It would allow
for anyone to inject anything a=
t all into cgi as a get statement.


Ruben


>

> Ruben Safir wrote:
>
> > This is an example of so=
mething that is just a PIA to churn through,
> > partly because th=
ese idiots are splicing an ISII crapolla fix into
> > their "docum=
entations", and secondly because assume your sitting on
> > someon=
e elses webserver, rather than your own, and thirdly because
> > =
they believe that your apache set up has a rather rare and somewhat
>=
> insecure module installed for RedirectMatchUrl, and then ...
> =
>
> > their last instruction fails to identify what the hell t=
he code is
> > for!  Is it httpd.conf?  Is it perl code =
to drop into the application?
> >
> > The who concept is=
to redirect a static uri like
> >
> > /www.myuri.com/messages/some_numbers_as_arguments" target=3D"_blank">http:/=
/www.myuri.com/messages/some_numbers_as_arguments

> >

> > to their cgi engine automaticaly, to be translated to lookr>> > internally as something like this:
> >
> >&n=
bsp;
> > bers_as_arguments" target=3D"_blank">http://www.myuri.com/cgi-bin/yabb.pl?s=
ome_numbers_as_arguments

> >
> >
> > It wo=
uld be just simpler to drop down to mod_perl and add it as a
> > s=
cript into the apache calls under the URI of
> >
> > href=3D"http://www.myuri.com/messages/" target=3D"_blank">http://www.myuri=
.com/messages/
> >
> > and be done with it....
&=
gt; >
> > The whole discussion of symbolic links to directorie=
s is just confussing
> > the issue.  There doesn't need to be=
any real directory when the server
> > is picking up that uri and=
handling it entirely within the apache
> > engine.
> >

> > Ruben
> >
table>
---955686164-1605772490-1363977856=:71992--

top" style=3D"font: inherit;">If you want Mod Rewrite Rules, you are going =
to need to know where the files are.

To sort this crazin=
ess out you have to figure where the board are. That is in cgi-bin/Boards.<=
/div>
http://www.hondosackett.com/yabb/YaBB.pl?board=3Dsignpost
iv>
But the threads are listed by date created in each board =
file in the Boards Directory. Adding to the insanity, the threads are in th=
eir own directory/folder called "Messages" and there are two files to go wi=
th it - the .txt file which is the actual thread and the .ctb which is an i=
ndex of that file (who started it, when, what permissions are allowed, etc.=
) and keeps track of the thread added posts.

Withi=
n Yabb, all this is figured out with several perl files, including Yabb.pl.=

To do a simple rewrite mod for YaBB, you need to
convert from the cgi-bin to without it.
I'm guessing it would be=
:
RewriteRule   ^cgi-bin/YaBB.pl$  YaBB/$
Dont cou=
nt on it for it may look like it, it is not the answer.
See: http=
://httpd.apache.org/docs/2.0/misc/rewriteguide.html
and: http://h=
ttpd.apache.org/docs/current/mod/mod_rewrite.html
- and search 'c=
gi' within the documents.

--- On Wed, 3/2=
0/13, Ruben Safir <mrbrklyn-at-panix.com>
wrote:
te style=3D"border-left: 2px solid rgb(16, 16, 255); margin-left: 5px; padd=
ing-left: 5px;">
From: Ruben Safir <mrbrklyn-at-panix.com>
Subject=
: Re: [NYLXS - HANGOUT] yabb
To: hangout-at-mrbrklyn.com
Date: Wednesday=
, March 20, 2013, 11:03 AM

On Wed, Mar 20, =
2013 at 09:38:30AM -0400, David Sugar wrote:
> Isn't this what the ex=
isting apache uri rewrite rules/module is also normally
> used
for, to do translations between uri paths and cgi arguments?  I recal=
l
> mediawiki can use rewrite rules to normalize document paths to fe=
ed the core
> app.  Why do they have/want to do it differently t=
han anyone else has?
> Doing it as a kind of redirect just seems biza=
are to me.  But I have heard
> equally bizzare things recently, =
like people insisting that file managers
> should now only present ca=
se insensitive file ordering, when of course the
> native file system=
is and always have been case sensitive...

I'd have to look at the s=
pecifics of what your refering to, but while in
the Pharmacy, the essent=
ial difference would be regular expression
mapping wbich would be a fair=
ly large security hole for a standard
setup, or any set up with usage of=
an .htaccess file.  It would allow
for anyone to inject anything a=
t all into cgi as a get statement.


Ruben


>

> Ruben Safir wrote:
>
> > This is an example of so=
mething that is just a PIA to churn through,
> > partly because th=
ese idiots are splicing an ISII crapolla fix into
> > their "docum=
entations", and secondly because assume your sitting on
> > someon=
e elses webserver, rather than your own, and thirdly because
> > =
they believe that your apache set up has a rather rare and somewhat
>=
> insecure module installed for RedirectMatchUrl, and then ...
> =
>
> > their last instruction fails to identify what the hell t=
he code is
> > for!  Is it httpd.conf?  Is it perl code =
to drop into the application?
> >
> > The who concept is=
to redirect a static uri like
> >
> > /www.myuri.com/messages/some_numbers_as_arguments" target=3D"_blank">http:/=
/www.myuri.com/messages/some_numbers_as_arguments

> >

> > to their cgi engine automaticaly, to be translated to lookr>> > internally as something like this:
> >
> >&n=
bsp;
> > bers_as_arguments" target=3D"_blank">http://www.myuri.com/cgi-bin/yabb.pl?s=
ome_numbers_as_arguments

> >
> >
> > It wo=
uld be just simpler to drop down to mod_perl and add it as a
> > s=
cript into the apache calls under the URI of
> >
> > href=3D"http://www.myuri.com/messages/" target=3D"_blank">http://www.myuri=
.com/messages/
> >
> > and be done with it....
&=
gt; >
> > The whole discussion of symbolic links to directorie=
s is just confussing
> > the issue.  There doesn't need to be=
any real directory when the server
> > is picking up that uri and=
handling it entirely within the apache
> > engine.
> >

> > Ruben
> >

  1. 2013-03-20 Ruben Safir <mrbrklyn-at-panix.com> Subject: [NYLXS - HANGOUT] back up
  2. 2013-03-20 Ruben Safir <mrbrklyn-at-panix.com> Subject: [NYLXS - HANGOUT] Korean cyberwar
  3. 2013-03-20 Ruben Safir <mrbrklyn-at-panix.com> Subject: [NYLXS - HANGOUT] yabb
  4. 2013-03-20 Ruben Safir <mrbrklyn-at-panix.com> Re: [NYLXS - HANGOUT] yabb
  5. 2013-03-20 David Sugar <dyfet-at-gnutelephony.org> Re: [NYLXS - HANGOUT] yabb
  6. 2013-03-20 David Sugar <dyfet-at-gnutelephony.org> Re: [NYLXS - HANGOUT] yabb
  7. 2013-03-20 Ruben Safir <mrbrklyn-at-panix.com> Re: [NYLXS - HANGOUT] yabb
  8. 2013-03-20 From: "Redpill" <red.pill-at-verizon.net> RE: [NYLXS - HANGOUT] back up
  9. 2013-03-20 Ruben Safir <mrbrklyn-at-panix.com> Re: [NYLXS - HANGOUT] back up
  10. 2013-03-20 Ruben Safir <mrbrklyn-at-panix.com> Re: [NYLXS - HANGOUT] yabb
  11. 2013-03-20 Ruben Safir <mrbrklyn-at-panix.com> Re: [NYLXS - HANGOUT] yabb
  12. 2013-03-20 Ruben Safir <mrbrklyn-at-panix.com> Re: [NYLXS - HANGOUT] yabb
  13. 2013-03-20 From: "Redpill" <red.pill-at-verizon.net> RE: [NYLXS - HANGOUT] back up
  14. 2013-03-20 Ron Guerin <ron-at-vnetworx.net> Re: [NYLXS - HANGOUT] back up
  15. 2013-03-20 From: "Paul Robert Marino" <prmarino1-at-gmail.com> Re: [NYLXS - HANGOUT] back up
  16. 2013-03-20 From: "Michael L. Richardson" <mlr52-at-michaellrichardson.com> Re: [NYLXS - HANGOUT] back up
  17. 2013-03-20 From: "Michael L. Richardson" <mlr52-at-michaellrichardson.com> Re: [NYLXS - HANGOUT] back up
  18. 2013-03-21 Ruben Safir <mrbrklyn-at-panix.com> Re: [NYLXS - HANGOUT] back up
  19. 2013-03-21 Ruben Safir <mrbrklyn-at-panix.com> Re: [NYLXS - HANGOUT] back up
  20. 2013-03-21 David Sugar <dyfet-at-gnutelephony.org> Re: [NYLXS - HANGOUT] yabb
  21. 2013-03-21 Ruben Safir <mrbrklyn-at-panix.com> Re: [NYLXS - HANGOUT] yabb
  22. 2013-03-21 Ruben Safir <mrbrklyn-at-panix.com> Subject: [NYLXS - HANGOUT] yabb
  23. 2013-03-22 Ron Guerin <ron-at-vnetworx.net> Re: [NYLXS - HANGOUT] yabb
  24. 2013-03-22 Ruben Safir <mrbrklyn-at-panix.com> Re: [NYLXS - HANGOUT] yabb
  25. 2013-03-22 Ruben <mrbrklyn-at-panix.com> Subject: [NYLXS - HANGOUT] UEFI
  26. 2013-03-22 Ruben <mrbrklyn-at-panix.com> Subject: [NYLXS - HANGOUT] Coin Forum - up and running on YaBB
  27. 2013-03-22 Elfen Magix <elfen_magix-at-yahoo.com> Re: [NYLXS - HANGOUT] yabb
  28. 2013-03-22 Elfen Magix <elfen_magix-at-yahoo.com> Re: [NYLXS - HANGOUT] Coin Forum - up and running on YaBB
  29. 2013-03-22 Elfen Magix <elfen_magix-at-yahoo.com> Re: [NYLXS - HANGOUT] yabb
  30. 2013-03-22 Ruben Safir <mrbrklyn-at-panix.com> Re: [NYLXS - HANGOUT] yabb
  31. 2013-03-23 David Sugar <dyfet-at-gnutelephony.org> Re: [NYLXS - HANGOUT] yabb
  32. 2013-03-24 Paul Robert Marino <prmarino1-at-gmail.com> Subject: [NYLXS - HANGOUT] UEFI
  33. 2013-03-24 Ruben Safir <mrbrklyn-at-panix.com> Subject: [NYLXS - HANGOUT] Paul and Grand Central terminal
  34. 2013-03-25 Ruben <mrbrklyn-at-panix.com> Re: [NYLXS - HANGOUT] UEFI
  35. 2013-03-25 From: "Paul Robert Marino" <prmarino1-at-gmail.com> Re: [NYLXS - HANGOUT] UEFI
  36. 2013-03-25 mayer ilovitz <mayeri-at-mindspring.com> Re: [NYLXS - HANGOUT] UEFI
  37. 2013-03-28 Ruben Safir <mrbrklyn-at-panix.com> Subject: [NYLXS - HANGOUT] [SECURE1-at-cablevision.com: case # 157902]
  38. 2013-03-28 Ruben Safir <mrbrklyn-at-panix.com> Subject: [NYLXS - HANGOUT] [SECURE1-at-cablevision.com: case # 157902]
  39. 2013-03-28 Ron Guerin <ron-at-vnetworx.net> Re: [NYLXS - HANGOUT] [SECURE1-at-cablevision.com: case # 157902]
  40. 2013-03-28 Ruben Safir <mrbrklyn-at-panix.com> Re: [NYLXS - HANGOUT] [SECURE1-at-cablevision.com: case # 157902]
  41. 2013-03-28 Ron Guerin <ron-at-vnetworx.net> Re: [NYLXS - HANGOUT] [SECURE1-at-cablevision.com: case # 157902]
  42. 2013-03-28 Ruben Safir <mrbrklyn-at-panix.com> Subject: [NYLXS - HANGOUT] bitcoins
  43. 2013-03-28 Ron Guerin <ron-at-vnetworx.net> Re: [NYLXS - HANGOUT] [SECURE1-at-cablevision.com: case # 157902]
  44. 2013-03-28 Ron Guerin <ron-at-vnetworx.net> Re: [NYLXS - HANGOUT] bitcoins
  45. 2013-03-28 Ruben Safir <mrbrklyn-at-panix.com> Subject: [NYLXS - HANGOUT] [info-at-rxinsider411.com: ICS Prescription Formulary Coverage Change]
  46. 2013-03-29 Ruben Safir <mrbrklyn-at-panix.com> Subject: [NYLXS - HANGOUT] Stan Lee is not quite dead yet
  47. 2013-03-29 Ruben Safir <mrbrklyn-at-panix.com> Subject: [NYLXS - HANGOUT] The NY Times and Egyptian Gold easy to find now
  48. 2013-03-29 Ron Guerin <ron-at-vnetworx.net> Re: [NYLXS - HANGOUT] The NY Times and Egyptian Gold easy to find
  49. 2013-03-29 David Sugar <dyfet-at-gnutelephony.org> Re: [NYLXS - HANGOUT] The NY Times and Egyptian Gold easy to find now
  50. 2013-03-30 Ruben Safir <mrbrklyn-at-panix.com> Subject: [NYLXS - HANGOUT] [rick-at-linuxmafia.com: Re: BIND options]
  51. 2013-03-30 Ruben Safir <mrbrklyn-at-panix.com> Subject: [NYLXS - HANGOUT] [rick-at-linuxmafia.com: More observations about the DNS-based DDoS]
  52. 2013-03-30 Ruben Safir <mrbrklyn-at-panix.com> Subject: [NYLXS - HANGOUT] [ruben-at-mrbrklyn.com: Re: BIND options]
  53. 2013-03-30 Ruben Safir <mrbrklyn-at-panix.com> Re: [NYLXS - HANGOUT] The NY Times and Egyptian Gold easy to find
  54. 2013-03-30 Ruben Safir <mrbrklyn-at-panix.com> Re: [NYLXS - HANGOUT] The NY Times and Egyptian Gold easy to find

NYLXS are Do'ers and the first step of Doing is Joining! Join NYLXS and make a difference in your community today!