summaryrefslogtreecommitdiff
path: root/doc/news/sanitization.mdwn
diff options
context:
space:
mode:
authorjoey <joey@0fa5a96a-9a0e-0410-b3b2-a0fd24251071>2006-04-25 03:20:04 +0000
committerjoey <joey@0fa5a96a-9a0e-0410-b3b2-a0fd24251071>2006-04-25 03:20:04 +0000
commitfae3db5baa0223cc5a24780d3de440367fe28bbf (patch)
tree7d00c29237a030ef8bc48b40e5f3fed2e9d03c63 /doc/news/sanitization.mdwn
parentd7aecf6ddc19d1dac30ec5616134c2a7e7f4d573 (diff)
oops
Diffstat (limited to 'doc/news/sanitization.mdwn')
-rw-r--r--doc/news/sanitization.mdwn7
1 files changed, 7 insertions, 0 deletions
diff --git a/doc/news/sanitization.mdwn b/doc/news/sanitization.mdwn
new file mode 100644
index 000000000..6ce254157
--- /dev/null
+++ b/doc/news/sanitization.mdwn
@@ -0,0 +1,7 @@
+ikiwiki's main outstanding security hole, lack of [[HtmlSanitization]] has
+now been addressed. ikiwiki now sanitizes html by default.
+
+If only trusted parties can edit your wiki's content, then you might want
+to turn this sanitization back off to allow use of potentially dangerous
+tags. To do so, pass --no-sanitize or set "sanitize =&gt; 0," in your
+[[ikiwiki.setup]].