: 4582 | 108646 | 12353

Links on messages and referrer issue... 
Use this IdeaSpace to post ideas about the Notes Client.

: -4
: 1
: 5
: Notes Client / iNotes
: security, url, address
: Serdar Basegmez964 30 Sep 2010
:
: / Email
I just blogged about it.
 
http://lotusnotus.com/lotusnotus_en.nsf/dx/be-careful-to-click-links-on-inotes.htm
 
When a user clicks a url coming with e-mail, referrer information is going to the remote web server. This information includes iNotes server url and name of the mail database.



1) Peter von Stöckel2682 (01 Oct 2010)
Is this a suggestion, or merely a reflection? Are you reporting a bug, ar just commenting on functionality of the web browser?
2) Erwin Heeren1182 (01 Oct 2010)
It is a security concern for all web based mail boxes. If you are paranoid, you can copy/paste the urls.
3) Erwin Heeren1182 (01 Oct 2010)
It is a security concern for all web based mail boxes. If you are paranoid, you can copy/paste the urls.
4) Erwin Heeren1182 (01 Oct 2010)
It is a security concern for all web based mail boxes. If you are paranoid, you can copy/paste the urls.
5) Serdar Basegmez964 (01 Oct 2010)
@Peter, it is not a bug, the fuctionality is working as expected.

However, it should be and can be fixed, I think. It creates a security and privacy concern for the end user.

@Erwin, it is partly true. But user name cannot be extracted in other mail systems, because it is mostly encoded in the session information.
6) Erwin Heeren1182 (01 Oct 2010)
You are not obliged to use the username as mailbox filename. I feel more for a warning or restriction when giving default or anonymous access to a mailbox/database.
7) Erwin Heeren1182 (01 Oct 2010)
You are not obliged to use the username as mailbox filename. I feel more for a warning or restriction when giving default or anonymous access to a mailbox/database.
8) Serdar Basegmez964 (16 Apr 2011)
Status changed to Withdrawn










:
:




Welcome to IdeaJam™


You can run IdeaJam™ in your company. It's easy to install, setup and customize. Your employees, partners and customers will immediately see results.

Use IdeaJam to:

  • Collect ideas from employees
  • Solicit feedback and suggestions from employees and customers
  • Run innovation contests and competitions
  • Validate concepts
  • Use the power of "crowd-sourcing" to rank ideas and allow the best ideas to rise to the top

IdeaJam™ works with:

  • IBM Connections
  • IBM Lotus Quickr
  • Blogs and Wikis
  • Websphere Portal
  • Microsoft Sharepoint
  • and other applications.

IdeaJam has an extensive set of widgets and API's that allow you to extend and integrate IdeaJam™ with other applications.

Learn more about IdeaJam >>






IdeaJam developed by

Elguji Software Logo