Dotclear


Ignore:
Timestamp:
11/17/14 10:30:07 (11 years ago)
Author:
franck <carnet.franck.paul@…>
Branch:
default
Message:

Add an optional setting (blog pref) to prevent blog from Clickjacking

File:
1 edited

Legend:

Unmodified
Added
Removed
  • admin/blog_pref.php

    r2776 r2797  
    234234          $blog_settings->system->put('enable_xmlrpc',!empty($_POST['enable_xmlrpc'])); 
    235235          $blog_settings->system->put('note_title_tag',$_POST['note_title_tag']); 
    236  
    237236          $blog_settings->system->put('nb_post_for_home',$nb_post_for_home); 
    238237          $blog_settings->system->put('nb_post_per_page',$nb_post_per_page); 
     
    250249          $blog_settings->system->put('nb_comment_per_feed',$nb_comment_per_feed); 
    251250          $blog_settings->system->put('short_feed_items',!empty($_POST['short_feed_items'])); 
    252  
    253251          if (isset($_POST['robots_policy'])) { 
    254252               $blog_settings->system->put('robots_policy',$_POST['robots_policy']); 
    255253          } 
     254          $blog_settings->system->put('prevents_clickjacking',!empty($_POST['prevents_clickjacking'])); 
    256255 
    257256          # --BEHAVIOR-- adminBeforeBlogSettingsUpdate 
     
    606605     echo '</div>'; 
    607606 
     607     echo 
     608     '<div class="fieldset"><h4>'.__('Blog security').'</h4>'. 
     609     '<p><label for="prevents_clickjacking" class="classic">'. 
     610     form::checkbox('prevents_clickjacking','1',$blog_settings->system->prevents_clickjacking). 
     611     __('Protect the blog from Clickjacking (see <a href="https://en.wikipedia.org/wiki/Clickjacking">Wikipedia</a>)').'</label></p>'. 
     612     '<br class="clear" />'. //Opera sucks 
     613     '</div>'; 
    608614 
    609615     # --BEHAVIOR-- adminBlogPreferencesForm 
Note: See TracChangeset for help on using the changeset viewer.

Sites map