in reply to Structuring a Web site and security issues

From a security standpoint, CGI::Carp qw(fatalsToBrowser) isn't a great idea in production. You should consider logging instead. fatalsToBrowser makes sense during development (quickly see when code fails), but in production it's just another avenue for your website's users to gather information about the internal workings of your site.
  • Comment on Re: Structuring a Web site and security issues

Replies are listed 'Best First'.
Re^2: Structuring a Web site and security issues
by bradcathey (Prior) on Dec 27, 2005 at 14:06 UTC

    Thanks for reminding me, but that is just in there for development. It will all come out in production.


    —Brad
    "The important work of moving the world forward does not wait to be done by perfect men." George Eliot