bugzilla | 1 Jul 01:19 2005
Picon

[Bug 2636] New: for added security, add .htaccess files to sensitive directories

http://bugzilla.wikimedia.org/show_bug.cgi?id=2636

           Summary: for added security, add .htaccess files to sensitive
                    directories
           Product: MediaWiki
           Version: 1.5beta1
          Platform: All
               URL: http://www.insecurity.org/images/
        OS/Version: All
            Status: NEW
          Severity: normal
          Priority: Normal
         Component: Installation
        AssignedTo: wikibugs-l@...
        ReportedBy: mw-bugs@...

Add an .htaccess to sensitive installation directories, inserting at a minimum:

Options -Indexes

to help prevent directory browsing on a Per-Directory basis...

--

-- 
Configure bugmail: http://bugzilla.wikimedia.org/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug, or are watching the assignee.
bugzilla | 1 Jul 01:23 2005
Picon

[Bug 2636] for added security, add .htaccess files to sensitive directories

http://bugzilla.wikimedia.org/show_bug.cgi?id=2636

brion@... changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
             Status|NEW                         |RESOLVED
         Resolution|                            |DUPLICATE

------- Additional Comments From brion@...  2005-06-30 23:23
UTC -------
Note that:
a) we already include several .htaccess files with 'Deny from all'.
b) our directory layout and standard contents are public knowledge and well-known.

Closing as duplicate of bug 415 for any remaining issues.

*** This bug has been marked as a duplicate of 415 ***

--

-- 
Configure bugmail: http://bugzilla.wikimedia.org/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug, or are watching the assignee.
bugzilla | 1 Jul 01:23 2005
Picon

[Bug 415] include a .htaccess file to turn of globals and other safety measures, and commented out other apache.conf options

http://bugzilla.wikimedia.org/show_bug.cgi?id=415

brion@... changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
                 CC|                            |mw-bugs@...

------- Additional Comments From brion@...  2005-06-30 23:23
UTC -------
*** Bug 2636 has been marked as a duplicate of this bug. ***

--

-- 
Configure bugmail: http://bugzilla.wikimedia.org/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug, or are watching the assignee.
bugzilla | 1 Jul 01:26 2005
Picon

[Bug 2637] New: My watchlist does not show the most updated history of this page

http://bugzilla.wikimedia.org/show_bug.cgi?id=2637

           Summary: My watchlist does not show the most updated history of
                    this page
           Product: Wikimedia web sites
           Version: unspecified
          Platform: PC
               URL: http://en.wikipedia.org/w/index.php?title=Race_and_IQ&cu
                    rid=26494&action=history
        OS/Version: Windows XP
            Status: NEW
          Severity: minor
          Priority: Low
         Component: Other
        AssignedTo: wikibugs-l@...
        ReportedBy: gww1210@...
                CC: gww1210@...

I went to my watchlist page: http://en.wikipedia.org/wiki/Special:Watchlist and then proceeded to 
look at the "Race and Intelligence" page. It shows that most recent edit to have been as such:

Race and intelligence; 05:01 . . Zen-master (Talk) (intro clarity improvements (article still needs 
a lot more work to be presented scientifically and neutrally))

However, when I clicked on "hist," I saw diffs that were more recent than this one! I suspect that 
the article may have had its name (title) changed from "Race and Intelligence" to "Race and IQ" and 
then back to its original title, possibly confusing my watchlist. Evidence from that comes from 
these two entries on my watchlist -both for the 30th of June 2005:

(diff) (hist) . . Race and IQ; 15:34 . . Ed Poor (Talk) ("...the black-white IQ gap is in large 
(Continue reading)

bugzilla | 1 Jul 01:27 2005
Picon

[Bug 2638] New: Special:Search "what links here" button points to wrong page

http://bugzilla.wikimedia.org/show_bug.cgi?id=2638

           Summary: Special:Search "what links here" button points to wrong
                    page
           Product: MediaWiki
           Version: 1.5beta1
          Platform: All
        OS/Version: All
            Status: NEW
          Severity: minor
          Priority: Normal
         Component: Search
        AssignedTo: wikibugs-l@...
        ReportedBy: mz.20.cdccdc@...

I do a Special:Search for a page that does not exist, but that returns search
results. The "what links here" link appears on the sidebar, but is for the last
listed search result - not what I expected.  The link should either not appear,
or should take me to Whatlinkshere for the string I searched for.

--

-- 
Configure bugmail: http://bugzilla.wikimedia.org/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug, or are watching the assignee.
bugzilla | 1 Jul 01:47 2005
Picon

[Bug 1396] "Persistent" login expires many times within a single session

http://bugzilla.wikimedia.org/show_bug.cgi?id=1396

------- Additional Comments From tempshill@...  2005-06-30
23:47 UTC -------
I may have a workaround for this user.

I was unable to keep logged in for more than a few seconds today using Firefox
1.0.4.  I noticed that my enWikiUserID and enWikiUserName cookies were both set
to expire right away, as soon as I logged in.  My enwiki_session cookie was set
to expire when the browser is closed, as you'd expect.

I removed the 3 cookies mentioned above, logged in again, and it seems to be
working fine now.  I had not noticed these problems using IE, only using Firefox.

Perhaps this user could try deleting the three en.wikipedia.org cookies and
logging in again?

--

-- 
Configure bugmail: http://bugzilla.wikimedia.org/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug, or are watching the assignee.
bugzilla | 1 Jul 01:55 2005
Picon

[Bug 2624] Rollback not working on this page

http://bugzilla.wikimedia.org/show_bug.cgi?id=2624

------- Additional Comments From cs@...  2005-06-30 23:55 UTC -------
(In reply to comment #1)
> There's nothing to roll back; the editor reverted their own edit, so the text 
> that would be rolled back to is the same as the current text:
> http://en.wikipedia.org/w/index.php?title=Template%
> 3AInfobox_OS&diff=17830228&oldid=17506402

Would it be possible to determine this and stop the rollback function from displaying? If this 
suggestion is implemented then it might be an idea to note that the user rolled back their 
changes themselves.

--

-- 
Configure bugmail: http://bugzilla.wikimedia.org/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug, or are watching the assignee.
bugzilla | 1 Jul 02:50 2005
Picon

[Bug 2614] Section edit links don't appear on some "difference between revisions" pages

http://bugzilla.wikimedia.org/show_bug.cgi?id=2614

order@... changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
             Status|RESOLVED                    |REOPENED
         Resolution|FIXED                       |

------- Additional Comments From order@...  2005-07-01 00:50
UTC -------
OK, what I reported is fixed (yay! that was fast!) but now try clicking Last
somewhere except on the most recent edit--  no section edit links.

--

-- 
Configure bugmail: http://bugzilla.wikimedia.org/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are on the CC list for the bug, or are watching someone who is.
bugzilla | 1 Jul 02:50 2005
Picon

[Bug 2639] New: Show edits on deleted pages to sysops

http://bugzilla.wikimedia.org/show_bug.cgi?id=2639

           Summary: Show edits on deleted pages to sysops
           Product: MediaWiki
           Version: 1.5beta1
          Platform: PC
        OS/Version: Linux
            Status: NEW
          Severity: enhancement
          Priority: Normal
         Component: History/Diffs
        AssignedTo: wikibugs-l@...
        ReportedBy: cesarb@...

It would be helpful for sysops to be able to see on a user's contributions the
edits made to deleted pages, with links to the deleted revisions. For instance,
if the only thing a user does is to create articles which are deleted later, it
looks like the user made no edits at all.

--

-- 
Configure bugmail: http://bugzilla.wikimedia.org/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug, or are watching the assignee.
bugzilla | 1 Jul 02:53 2005
Picon

[Bug 2640] New: Mark redirects on watchlist edit

http://bugzilla.wikimedia.org/show_bug.cgi?id=2640

           Summary: Mark redirects on watchlist edit
           Product: MediaWiki
           Version: 1.5beta1
          Platform: PC
        OS/Version: Linux
            Status: NEW
          Severity: enhancement
          Priority: Normal
         Component: Special pages
        AssignedTo: wikibugs-l@...
        ReportedBy: cesarb@...

It would be useful to be able to tell at a glance whether a page is a redirect
or not when looking at the full watchlist, since page moves can leave useless
junk redirects on a user's watchlist.

--

-- 
Configure bugmail: http://bugzilla.wikimedia.org/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug, or are watching the assignee.

Gmane