[Mailman-Users] HTML-format Attachments in the List Archives

Mark Sapiro msapiro at value.net
Sun Aug 19 06:47:57 CEST 2007


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Barry Finkel wrote:
> 
> When I click on the .gif or .jpeg hyperlinks, I see the images.
> But when I click on the .htm hyperlink, I see the HTML text.
> If I take that HTML text, save it to /tmp, and then open that file
> with Firefox, I see the mail message properly formatted.
> 
> I have looked at the ARCHIVE_HTML_SANITIZER variable in Defaults.py,
> and I am not clear what value to set so that the .htm hyperlink
> will display the formatted HTML source instead of the raw HTML source.
> Is this the parameter that I need to change?


Yes, and you need to set it to 3, BUT read the comment in Defaults.py
about this and think long and hard about it before doing this.


3 - Remove text/html as attachments but don't HTML-escape them. Note:
    this is very dangerous because it essentially means anybody can send
    an HTML email to your site containing evil JavaScript or web bugs,
    or other nasty things, and folks viewing your archives will be
    susceptible.  You should only consider this option if you do heavy
    moderation of your list postings.

- --
Mark Sapiro <msapiro at value.net>       The highway is for gamblers,
San Francisco Bay Area, California    better use your sense - B. Dylan

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.7 (MingW32)

iD8DBQFGx8t9VVuXXpU7hpMRAp72AKDOjrIIIKHnxzzZ70O+4nKZaZmcJQCg9PPk
Lbz7npaaRLlqLppA1O+4/uw=
=Wf7M
-----END PGP SIGNATURE-----


More information about the Mailman-Users mailing list