You are not logged in Log in Join
You are here: Home » Members » Matt Behrens

Log in
Name

Password

 

Matt Behrens

Up one level

 Title   Type   Size   Last Modified   Description 
Please, don't run Zope as the UNIX 'nobody' user! Tip 2 K 2001-10-22  
UNIX Zope security patches Software Package   2002-04-26

These patches apply security fixes to z2.py that will help to secure your Zope installation against OS attacks and vice versa. They are especially important if you start Zope as root (i.e. to bind ZServer to port 80), but also help with other issues, such as an insecure umask making your ZODB readable to all users on your system. For more information on the security issues fixed, follow the Release Information link below.

These patches address Collector issue 1 as well as a more recently discovered problem with access being granted to Zope of root's group memberships.

Please let me know if these patches fail to compile on your UNIX-like operating system.

Zope on UNIX security patches available News Item 1 K 2002-01-23  
ZOracleDA Software Package   2001-10-25

This is simply an aggregation of the latest ZOracleDA and the latest DCOracle that I formerly used at work, plus a setup file for Oracle 8.1.7. If you don't trust DCOracle2 yet, this is the "old, proven code". We are actively using DCOracle2 in production now, though, so give it a shot!

ZOracleDA-zigg-0.1 released News Item 1 K 2001-08-31  
Bug Day 8/02 an unqualified success News Item 1 K 2002-08-14