Received: (qmail 1761 invoked by uid 2012); 18 Jun 1999 17:05:56 -0000 Message-Id: <19990618170556.1760.qmail@hyperreal.org> Date: 18 Jun 1999 17:05:56 -0000 From: Allen Chen Reply-To: achen@cjas.org To: apbugs@hyperreal.org Subject: Should Apache allow arguments appended to server-parsed files? X-Send-Pr-Version: 3.2 >Number: 4608 >Category: mod_include >Synopsis: Should Apache allow arguments appended to server-parsed files? >Confidential: no >Severity: non-critical >Priority: medium >Responsible: apache >State: closed >Class: sw-bug >Submitter-Id: apache >Arrival-Date: Fri Jun 18 10:10:01 PDT 1999 >Last-Modified: Fri Jun 18 11:21:28 PDT 1999 >Originator: achen@cjas.org >Organization: >Release: 1.3.6 >Environment: Solaris 2.6 >Description: I am not certain if this is a bug or normal behvaior. When you activate server-parsed HTML, Apache allows URLs to have extraneous stuff appended to it with a /. For instance, http://www.a.com/main.html is the real URL, but http://www.a.com/main.html/blah/junk/foo/bar also returns main.html. I can see how this might be normal behavior since CGIs allow this, but our search engine is getting mightily confused because of it... >How-To-Repeat: This happens on your own site. For instance: http://www.apache.org/docs/mod/mod_include.html/asdkasdasdasdas Also note that this creates a "[an error occurred while processing this directive]" error at the top of your page. >Fix: >Audit-Trail: State-Changed-From-To: open-closed State-Changed-By: marc State-Changed-When: Fri Jun 18 11:21:28 PDT 1999 State-Changed-Why: That is normal behaviour and is allowed on purpose. >Unformatted: [In order for any reply to be added to the PR database, you need] [to include in the Cc line and make sure the] [subject line starts with the report component and number, with ] [or without any 'Re:' prefixes (such as "general/1098:" or ] ["Re: general/1098:"). If the subject doesn't match this ] [pattern, your message will be misfiled and ignored. The ] ["apbugs" address is not added to the Cc line of messages from ] [the database automatically because of the potential for mail ] [loops. If you do not include this Cc, your reply may be ig- ] [nored unless you are responding to an explicit request from a ] [developer. Reply only with text; DO NOT SEND ATTACHMENTS! ]