Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.
Comment: Migrated to Confluence 4.0

...

Note
titleNote:

Please bear in mind that the activation of file: URIs for managed content exposes your filesystem to the ingest process and as such could be abused by inserting URIs to files that are not intended for ingestion. While Fedora sanitizes the given URI and denies URIs such as file:///data/../etc/passwd, Make sure that you:

  • only expose directories without symlinks
  • only expose directories that don't contain any sensitive information, like access to configuration files, password files, user home directories, etc.
  • deny file URIs as soon as the ingest is finished