Adobe 38000827 Administration Guide - Page 66

Click the IP/Port tab., Click Add Files/Paths.

Page 66 highlights

11 Select the permissions. For example, select the Read check box for ColdFusion pages within the mytestapps sandbox to read files in the C:\pix directory. Note: This behavior differs from other tabs, such as CFTags, where you select items to disable. 12 Click Add Files/Paths. The file path and its permissions appear in the Secured Files and Directories list. 13 Click the IP/Port tab. These settings let you prevent ColdFusion pages in this sandbox from accessing IPs and ports with the tags that call third-party resources, such as cfmail, cfpop, cfldap, cfhttp, and so on. Note: These settings have no effect on an end user's ability to browse sites; they affect access to a ColdFusion page with certain tags. If a ColdFusion page does not use, for example, cfhttp, any sandbox restriction on cfhttp has no effect. 14 To prevent these ColdFusion tags from accessing an IP address at a port or range of ports, enter the IP Address and port or port range that the tags can access. Note: By default, these ColdFusion tags in this sandbox can access all IPs at all ports. For example, to deny this sandbox access to 207.88.220.3 on ports 80 and higher, perform the following steps: a In the IP Address field, enter 207.88.220.3. b In the Port field, enter 79, and click This Port and Lower. You disabled access by these ColdFusion tags for this and all other IPs and ports. Tip: To deny access by these ColdFusion tags to an entire site, enable access for a local resource, such as your local mail server, ftp server, and so on. 58 Chapter 4 Administering Security

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68

58
Chapter 4
Administering Security
11
Select the permissions.
For example, select the Read check box for ColdFusion pages within the mytestapps
sandbox to read files in the C:\pix directory.
Note:
This behavior differs from other tabs, such as CFTags, where you select items to
disable.
12
Click Add Files/Paths.
The file path and its permissions appear in the Secured Files and Directories list.
13
Click the IP/Port tab.
These settings let you prevent ColdFusion pages in this sandbox from accessing IPs
and ports with the tags that call third-party resources, such as
cfmail, cfpop,
cfldap
,
cfhttp
, and so on.
Note:
These settings have no effect on an end user’s ability to browse sites; they affect
access to a ColdFusion page with certain tags. If a ColdFusion page does not use, for
example,
cfhttp
, any sandbox restriction on
cfhttp
has no effect.
14
To prevent these ColdFusion tags from accessing an IP address at a port or range of
ports, enter the IP Address and port or port range that the tags can access.
Note:
By default, these ColdFusion tags in this sandbox can access all IPs at all ports.
For example, to deny this sandbox access to 207.88.220.3 on ports 80 and higher,
perform the following steps:
a
In the IP Address field, enter 207.88.220.3.
b
In the Port field, enter 79, and click This Port and Lower.
You disabled access by these ColdFusion tags for this and all other IPs and ports.
Tip:
To deny access by these ColdFusion tags to an entire site, enable access for a local
resource, such as your local mail server, ftp server, and so on.