I have had some suggestions for the fwreinit flag to be protected in order to reinitialize the application at hand. What do you think? Is this overkill? The application reinitializes, but it does not crash. It just adds some extra cycles to the request in order to clear and reinit the app. Please send me your comments, suggestions? Should an application reinit, be password protected? Thanks, Luis
Blog
Recent Entries
TestBox 7 : Real-Time Streaming, a Browser IDE, and a Major Leap for BoxLang
TestBox 7.x series continues our mission to be the best testing framework for BoxLang and CFML. This release is focused heavily on BoxLang CLI runner enhancements, real-time streaming test execution via SSE, a powerful dry run capability, the brand-new TestBox RUN web IDE, and significant quality-of-life improvements for developers working in both BoxLang and CFML environments.
From Legacy Risk to Modern Agility: A Phased Modernization Roadmap for CFML Teams
Many organizations running CFML applications today face the same challenge.
Their systems still work.
They support core business processes.
They generate revenue.
But at the same time, those platforms are increasingly exposed to risk.
Unsupported runtimes, operational fragility, security exposure, and difficulty integrating with modern systems are becoming more common in environments still running older versions of Adobe ColdFusion or Lucee.
The quest...
Add Your Comment
(3)
Dec 06, 2006 03:53:29 UTC
by Sana
Hi Luis,
I think it really important to keep our APP more secure. Why we allow site users to reinit our app. some users they just play with these kind of things and keep reinit app. In my app i am using onAppinit method to call global components + static data queriries and other global static info. so keep reinit the app cause some problem of server timeout and also whole system get very slow.
Thanks Sana
Dec 06, 2006 08:38:38 UTC
by Rob Gonda
If you allow to set a init key and init password is enough. You can set it to a complex password which no user could guess. That's secure enough for me. p.s. this captcha text is really annoying. Check out Charlie's solution, also default in a latest version of blogCFC
Dec 06, 2006 15:26:06 UTC
by Luis Majano
Thanks Rob!! You are the details man!! jeje.
Will take a look at it.