Welcome to WebmasterWorld Guest from 188.8.131.52
To follow on from that topic. My Guest Book has the facility to ban ip addresses from posting. I was wondering how effective this is. Would I ban the whole address or just part of it or is it a waste of time because if they want to spam yr book they will find ways around it.
Grateful for all your time.
Thanks for that, I think I understand. I quite like the Guest Book though and it suits my site but the spamming has just started and I strictly check the book and delete them straight away. Obviously if it continues it will spoil everything, especially if I cant delete them in time.
I will think about another way should things get worse.
Thanks for your time.
I was not aware that it is a security hole. How would it be any more than any other page on my site. Am I being naive here?
Is your guestbook named "guestbook". You may try renaming it and making the link to the newly named a graphic link button.
How about disabling the function of showing the email address on the guestbook page.
or.. just dump it as others have mentioned
Whether it compromises your server is arguable, but that it can be spammed and that it will be spammed to the point I no longer wanted it, no doubt remains the possibility that one day you will delete your guestbook in frustration definitely exists.
So the guys are right, run the guestbook as long as you can, in the meantime start looking into an alternate method for message entry, such as a forum. If your guestbook attracts this much attention, it is likely your forum will do well, if you have to transfer the posts manually, the sooner you do it, the easier the transition.
Thank you for your comments. Your experience, I think, will be my experience and I will eventually dump it. I have to go in manually now to delete about three a day, which I can handle. I will now think about another alternative.
Thank you all for your help on this thread. Much appreciated.