> Forums > Active Forums > Task Tracker > Add option to disable html coding and XSS checks
Last Post 17 Dec 2010 11:29 AM by Will Morgenweck. 0 Replies.
AddThis - Bookmarking and Sharing Button Printer Friendly
  •  
  •  
  •  
  •  
  •  
PrevPrev NextNext
You are not authorized to post a reply.
Author Messages
Not Resolved
Will Morgenweck Will Morgenweck Forum Admin Customers
Posts:7672


--
17 Dec 2010 11:29 AM
    • Task Type: Task
    • Target Version: 4.4
    • Affected Versions:
    • Included in Version:
    In some situations, topic authors are trusted and may need to capability to by-pass the XSS and Encoding filters designed to protect content.  This is not a high demand feature request, but it does come up often enough with our Enterprise customers. 

    Add option only available to Host users to disable XSS and Encoding filters per forum and per role. 
    Add clear and detailed warning that disabling XSS/Encoding is not advised and is strictly for "Use at your own Risk". 
    Add warning to topic creation page to indicate when XSS encoding is disabled. 
    Add option to log topics that have been created with XSS/Encoding disabled. 
    Will Morgenweck
    Director of Product Management
    DotNetNuke Corp.
    You are not authorized to post a reply.
    > Forums > Active Forums > Task Tracker > Add option to disable html coding and XSS checks
    test
    Copyright 2012 by DotNetNuke Corporation / Terms of Use / Privacy