Re: Menu.HTML

Matthew Anderson <[email protected]>
Newsgroups gmane.education.ezproxy
Message-ID <[email protected]>
Not sure if it would actually crash the server process, but if EZproxy is still configured to use that file for certain requests I can see how it might cause problems.

You can restore the file with the command "ezproxy -m" (replace/restore missing files).

I don't really see the security risk, but as an alternative to deletion, you could edit menu.htm and remove the auto generated database list.
We have something pretty simple in ours:
<p>
You have authenticated, but not specified a database to access.
</p>
<p>
<a href="[Your library's database list URL]">Click here for a list of databases</a><br />
<a href="/logout">Click here to log out</a>
</p>

You could also use the LoginMenu<https://help.oclc.org/Library_Management/EZproxy/Configure_resources/LoginMenu> directive in config.txt to send databaseless login requests to a different page.

Matthew Anderson
Library Technology Specialist
Mt. Hood Community College

From: EZproxy List <[email protected]> On Behalf Of Pullin, Mike
Sent: Friday, October 25, 2019 8:42 AM
To: [email protected]
Subject: [EZPROXY-L] Menu.HTML

External Email
Our security folks don't like the menu.html file hanging around on the server.  I tried deleting it and it locked the server.  Was that just a coincidence or is that file necessary for EZ Proxy to run?  Isn't it automatically re-generated at certain events?  (Like a restart or re-install?)

Thanks,
Mike Pullin
UNT Health Science Center

________________________________

To unsubscribe from the EZPROXY-L list, click the following link:
http://listserv.oclclists.org/scripts/wa.exe?SUBED1=EZPROXY-L&A=1


********************************************************************
If you wish to stop receiving messages from EZPROXY-L or otherwise amend your preferences,
you can do so <a href="https://www.oclc.org/forms/internet-subscription.en.html">here</a>.
Or email [email protected] including the relevant text below in the body of the email:
• To unsubscribe: "unsubscribe EZPROXY-L"
• To receive EZPROXY-L in digest form: "set EZPROXY-L digest"
• To set your options to no mail: "set EZPROXY-L nomail"
• To receive these messages in the future "set EZPROXY-L mail"
To contact the list owners directly please send your message to [email protected].
If you unsubscribe from EZPROXY-L, you will no longer be able to participate in any of its features, including the public forum.
To unsubscribe from all OCLC marketing email communications
(including all OCLC listervs, OCLC Connect emails, OCLC event notifications, product/service/cooperative updates and newsletters),
please email us at [email protected].
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.