Menu

#1244 Restrict Advanced Search results to 300 pages

Approved
closed
None
5
2019-01-03
2018-12-27
Ahasuerus
No

Restrict Advanced Searches to 300 pages in order to prevent malicious users/robots from running searches that adversely affect performance. An example of a malicious search:

/cgi-bin/adv_search_results.cgi?
USE_1=title_copyright&
ORDERBY=title_copyright&
USE_3=title_ttype&
USE_2=title_ttype&
CONJUNCTION_1=AND&
CONJUNCTION_2=AND&
TERM_1=19&
START=124200&
TERM_3=ESSAY&
TERM_2=INTERIORART&
OPERATOR_3=notcontains&
OPERATOR_2=notcontains&
OPERATOR_1=starts_with&
TYPE=Title

Discussion

  • Ahasuerus

    Ahasuerus - 2019-01-03

    Ticket moved from /p/isfdb/support-requests/148/

     
  • Ahasuerus

    Ahasuerus - 2019-01-03
    • summary: Restrict Advanced Search selection criteria --> Restrict Advanced Search results to 300 pages
    • Description has changed:

    Diff:

    --- old
    +++ new
    @@ -1,4 +1,4 @@
    -Restrict Advanced Search selection criteria to prevent malicious users/robots from running searches that adversely affect performance. An example of a malicious search:
    +Restrict Advanced Searches to 300 pages in order to prevent malicious users/robots from running searches that adversely affect performance. An example of a malicious search:
    
     /cgi-bin/adv_search_results.cgi?
     USE_1=title_copyright&
    
    • Group: v1.0 (example) --> Approved
     
  • Ahasuerus

    Ahasuerus - 2019-01-03
    • status: open --> closed
    • assigned_to: Ahasuerus
     
  • Ahasuerus

    Ahasuerus - 2019-01-03

    Implemented in biblio/adv_search_results.py, installed in SVN 295 on 2019-01-02. Closing the FR.

     

Anonymous
Anonymous

Add attachments
Cancel





MongoDB Logo MongoDB