Data Connector Depending on Attributes
Nate Klingenstein
nate.klingenstein at utah.edu
Wed Feb 3 21:01:40 EST 2016
> No, but it's LDAP's problem to sanitize its inputs, not the client's.
One more question, then. Is that also so for other data sources or protocols that may be used in authentication, such as SQL? I know it’s a potentially inexhaustible list, but just the three or so people ask about here; LDAP, Kerberos, SQL, and so forth.
"New authors of XML documents often misunderstand the purpose of a CDATA section, mistakenly believing that its purpose is to "protect" data from being treated as ordinary character data during processing. Some APIs for working with XML documents do offer options for independent access to CDATA sections, but such options exist above and beyond the normal requirements of XML processing systems, and still do not change the implicit meaning of the data.”
https://en.wikipedia.org/wiki/CDATA#Syntax_and_interpretation
sigh
More information about the users
mailing list