How are people performing virus scans on uploads?

I am going to be starting an application shortly that will accept uploaded files from 3rd parties. Luckily they will not be annonymous but you never know if a friendly source may have become infected without thier knowledge.
So my question is how are other APEX developers ensuring that the files they receive are clean? Does running a real-time AV on the webserver scan temporary files hitting somewhere under /www or does APEX load each bit directly into the BLOB, effectively bypassing scanning? I've searched a bit but was unable to find anything concrete here on the forums.
I'm debating dropping the file to the file system for scanning before it is accessible by our internal users but if that is unnecessary I don't have to worry about it.
Thank you,
Kelley

Kelley,
Another option (in addition to those suggested) is to integrate with a content scanning service that supports the ICAP protocol, such as Symantec:
http://www.symantec.com/business/products/overview.jsp?pcid=2242&pvid=836_1
Essentially you let the user upload the file, then stream it across using UTL_TCP etc to your scanning service and check the result that is passed back (depending on your server setup you can choose to scan for viruses and/or check for content type to detect certain 'categories' that you might want to block).
It requires a bit of leg-work on you part to code the streaming, but it's not too bad once you understand how the ICAP protocol works (it's just a protocol that you need to learn to send the correct information to the server and know how to receive the content).
Hope this helps,
John.
http://jes.blogs.shellprompt.net
http://apex-evangelists.com

Similar Messages

  • How are people searching for music now that the power search link is gone?

    How are people searching for music now that the power search link is gone?

    That info in my above post doesn't bring back Power Search
    I think this Discussion holds the answer https://discussions.apple.com/message/20451945#20451945
    Found it under iTunes U!  Don't know why the moved it from the main page but you will find it here.

  • How are people connecting Mainstage to their PA systems?

    How are people connecting Mainstage to their PA systems? I'm running my electric guitar into my MBP with a 1/4 jack and an adapter and am coming out of the headphone jack into a DI box and then into the sound system. On some patches I'm getting a lot of noise/unintended distortion and our sound guy is unsure of what to do, ( tried adjusting gain to no effect). is their a better way to route things?

    Great Grains,
    << But what is the real advantage over the 1/4 adapter? >>
    I don't know the presonus specifically - I have an RME and a Duet - but with an interface the advantages are; better converters = better sound, less latency (not 'no latency' but definitely a lot less),
    better impedance (better plugs basically) for PAs, flexible outputs (stereo, multi channel, etc).
    Realistically the little 1/8" ins and outs out on a computer are not very good, esp for real instruments, and there is tons of latency.
    As to your question about Stereo mono and what to send the PA:
    There's no real reason you can't send stereo (L+R, 1+2, whatever) to the house PA if you want. Depending on what level sound people you're dealing with some of them may not be open to running you stereo, esp if you play guitar and they are... let's say, set in their ways. They also may have limited a number of inputs. At higher level venues the PA rigs and sound people will do anything you want, do it really well and have a good time doing it.
    To run mono;
    1. In mainstage, put a gain plugin on the output channel and select 'mono' within the plugin.
    2. Send one output (typically left for mono, but either is fine) of your presonus to the PA.
    You can change from mono to stereo instantly with this setup (by selecting or unselecting mono within the gain plugin) to adjust for different situations.
    -R

  • How are people monitoring this forum?

    I've stopped regularly checking everything out here. I used to get a digest a few times a day and quickly scan everything. Now there doesn't seem to be anyway to get a digest and I don't seem to have the motivation to check the board very often. Just wondering how other people are handling it.

    MICHAEL! Hey...it has been a while.
    Yeah, I miss the digests too, but now I just visit the site and...well...read everything. How I find the time, I have no clue.
    And the automated e-mail notifications no longer include the responses in the forum...then tell you to go and read it yourself.
    sigh.
    And reputations are still gone.
    double sigh.
    Shane

  • How are people on ebay and the web factory unlocking iPhones?

    Hi,
    Can someone please shed some light on how people are offering factory unlock services for any iphone on eBay and on the internet? It seems to cost roughly the same through most of them (£40-50 for Orange UK).
    The reason for this question is that my brother does mobile phone repairs and unlocks, he has a device that will unlock Blackberry's and other phones, although he has never been able to find out how it works with the iphone. From my understanding the iphones IMEI has to be submitted to the Apple whitelist. If this is correct, how are these 3rd party companies doing this? Do they pay for access to the list or do they know somebody on the inside? I was of the opinion that only the official carrier could perform a factory unlock, obviously im wrong!

    That was my thoughts exactly, but how would you explain this site then? www.megara1n.com It is not installing any software on the phone and upon reading the reviews for it, it is not a scam and seems to be using the Whitelist as it does not lose the unlock when updating. This is just one example, there is a guy using the same method on ebay with over 500 sales and 100% feedback. There must be another way they are doing it. There are scammers on ebay asking for people to send their phones in to them which im sure will either be jailbroken or never returned!
    I am aware of the un-authorised methods of which you speak, jailbreak, gevey sim etc and I know that these methods used above are none of these.
    <Link Edited By Host>

  • How are people finding me and sending requests,is ...

    again how are strangers finding me and sending friend requests. is there somewhere they go like a master contact list of all skype customers

    kol wrote:
    again how are strangers finding me and sending friend requests. is there somewhere they go like a master contact list of all skype customers
    no such thing.  unfortunately, scammers and spammers are extremely resourceful people.  
    IF YOU FOUND OUR POST USEFUL THEN PLEASE GIVE "KUDOS". IF IT HELPED TO FIX YOUR ISSUE PLEASE MARK IT AS A "SOLUTION" TO HELP OTHERS. THANKS!
    ALTERNATIVE SKYPE DOWNLOAD LINKS | HOW TO RECORD SKYPE VIDEO CALLS | HOW TO HANDLE SUSPICIOS CALLS AND MESSAGES
    SEE MORE TIPS, TRICKS, TUTORIALS AND UPDATES in
    | skypefordummies.blogspot.com | 

  • How are peoples replacement iPhone 4's?

    Im thinking of replacing mine because of a yellow spot and a wiggly home button but 9/10 displays were wiggly too so my question is how are all of your replacements compared to the one you had before?

    Wankirby wrote:
    iPhoneMac5 you're full of it. you expect us to believe that you just walked in a store and they just happened to have a phone waiting for you to exchange eh? yeah when 1,000s of people who pre-ordered(me) and people who are on apple's in-store "priority" waiting list are still waiting for their phones?!? C'MON SON!!!
    the kicker is where u ask,
    iPhoneMac5 wrote:
    hace you gotten a replacement? cant i just test out the replacement with mine to compare?
    why are you asking this if you've already been to the store and exchanged phones already?
    you're a liar, and a bad one at that
    Why don't you think or do some research before ripping someone or calling someone a liar? Yes, Apple Stores do carry a stock of iP4's dedicated solely for replacing problemattic or non-functional phones that people have already purchased and paid for. Don't believe me? Call your local Apple Store and ask them!
    You see, I know this for a fact. How, you say??? Because I went through this very process myself. I was lucky enough to get in on the first wave of iP4's and received mine on the 24th. Unfortunately, it had a screen issue and suffered from the 'No SIM' issue. I called our local Apple Store on the 28th to ask if I could get it replaced fully expecting them to say I had wait since ATT and Apple shutdown pre-orders due to the high demand. I went in the next day, calling numerous times and speaking to numerous people just to make sure they did in fact have stock and I wouldn't be turned away when I got there, and what do you know, they got me in and out of there in 10 minutes with a brand new replacement unit.
    I had a buddy of mine on the order waiting list so I asked the Genius if they had any units available for purchase. He said no they sold out of the "for purchase" units the day before and only had a stock for replacing malfunctioning phones. So yes, son, they do carry a stock of replacement-only units. Shocking, isn't it!?!?!!
    What, do you really think Apple is going to tell people who ALREADY own the phone that they can't get a replacement if it's bad? The manufacturer has to honor the warranty buyers have already paid for. Sure, people who don't already own the phone are upset that the stock is low and demand is high and they have to wait. But what do you think would happen if people who have already purchased the phone and find they have a bad unit and Apple can't live up to the warranty that they contractually agreed to at time of purchase? Can you say lawsuit? I'm not a lawyer, but I don't think Apple can get sued by someone on the waiting list over the limited stock issue. However, they can certainly get sued over not honoring a full-service new item warranty contract.

  • How are people using Catalogs?

    I know I asked this question some time ago, but I'd like to ask it again since I will soon be upgrading from LR2.7 to LR3.
    I would like some friendly advice from people how they use Lightroom Catalogs.
    I currently use several catalogs.  I have one strictly for day-to-day stuff where I might take shots of friends and family.
    I use another catalog which I use strictly for Photography Workshops I go on.
    Yet another one is one which I use strictly for the few professional photography jobs I have done.  I am not a professional photographer, but I have been paid for a few photo jobs.
    Still another is one which I use strictly for pictures from others.  I get a lot of pictures from relatives who wish me to edit them.  Notably, I get a lot from my mother, and many of those pictures are of family and friends, of her flower garden.  So I do like to keep them myself, but I do so in a separate catalog.... in order to keep them separate from my own pictures.  I get a lot of photos from a friend of mine whom I used to work with in Europe....and he is now sending me many pictures he has taken while working in Ghana.  I like to keep some of these in a catalog but for now, I like that to be a separate catalog then the one I do most of my work in.
    I would like to get some ideas from LR users how many catalogs they might use.  Do they separate their photos into different catalogs like I do?  Do they keep photos all in one big catalog?  Or perhaps do they just use a small number of catalogs.
    I do like the ability to keep separate problems, but the 2 main "problems" I have with doing this are as follows: 1)I some times I accidentally put pictures in the wrong catalog.  I usually catch this soon and merely have to do the process again, putting the pictures in the right catalog. and 2)As far as I know, I do not think you can search by keyword (tag) across multiple calendar.  This is not a big issue, but it would be nice to be able to search by keyword to get, for example, all of the pictures taken by me and my Mother of say, my niece.
    Any thoughts would be appreciated.
    Thanks for your input.
    Richard

    I know Lightroom doesn't care about the directory/folder structure.  But I care how that directory/folder structure looks in Lightroom.  Again, it's kind of hard for me to explain this, but from what I've seen, LR mimics the structure you have on your hard drive.  It works just fine, but I don't want it to mimic the folder structure I had before with LR 2.7.
    I'll try to explain, but, again, it's kind of hard for me to put into words without one actually seeing what I'm talking about.  My original folder structure on my hard drive was by year......2005, 2006, 2007, 2008, etc., each a primary folder.
    Within each year, I had folders with the date(s) as well as a brief description of what was in that folder.....e.g., 122509_Christmas_at_Mom_and_Dads.
    Within that same yearly folder (e.g. 2009), I also would have things like 042809_Kauai_Photo_Workshop as a subfolder.
    With LR 2.7, I organized things by Catalog.  So I had a Catalog for personal photos such as Christmas with my family; I had a separate photo for Photo Workshops  I had yet another separate Catalog for pictures my Mom sends me to edit.  And, I had a few other catalogs.  It was just my way or organizing groups of photos.
    My original post asked the question about how people use catalogs.....either single catalogs or multiple catalogs.  Yes, there were many comments about using keywords.  Based on the comments I had received, I did decide to combine all of my catalogs into one single catalog.
    Within that new single catalog, however, I still want separate folders showing "personal pictures," "pictures from Mom," "workshop photos," "photos I did for a professional job," etc.  That's just the way I like to organize things.  As I found out, if I create separate folders in LR in a single catalog like this, it also creates a corresponding folder on my hard drive.  Therefore, I have to move those pictures into that corresponding folder if I want to keep these separate folders in LR.
    One reason I like organizing things this way is that my Mom often will take similar pictures to what I take.  She'll take pictures of her grandkids that she wants me to "fix" by removing redeye, etc.  Because I'm not so sure she backs things up to the extent I do, I also like keeping her pictures to be sure they are properly backed up like I do backups.  When she takes pictures of the grandkids, I'm usually over visiting as well and take my own pictures.  So I like to keep these sets of pictures separate.   Yes, I know I could put keywords in there such as "Mom's Pictures" or "My Pictures," but I just like to keep these sets of pictures separate.  That's the way I am.  People like to organize things their own ways.
    Having said all of that, I have been using keywords ever since I started using Lightroom, version 1.  I spend a lot of time doing so.  I do like them.  But, I also like having the LR folder organized the way I do.  Right now, I have a very long list of keywords.  If I want to find a group of pictures, I'm not so sure I'd find all of the ones I'm looking for unless I select the specific keywords I am looking for, and with the list as long as it is now (and it's growing), I might miss something.  With a single catalog, it does make it easier to search for all photos with a single key word, but the folders in LR help do help me narrow down what I might be looking for.
    Lightroom provides these tools, and to me, I am taking advantage of them, including keywords, to help me organize my photos.  Once I get my current LR photos into the new folder structure, any new additions will be very easily and quickly done.

  • Why and how are people adding themselves to my con...

    I have changed my password multiple times, but people are still finding a way to auto-accept themselves onto my contact list, this is not a problem from my account side it seems to be a server hacking issue where people have found a way to send an auto-accept message to the skype servers. it has caused problems several times already and I would like to know what is being done about this "auto-accept contact request" problem?

    If you are receiving contact requests on Skype you will see an introductory message. This is not a chat message and those users are not ale to chat with you until you accept their contact request. More details here: https://support.skype.com/en/faq/FA12005/how-do-i-accept-a-contact-request
    Until you accept their request their status should show up as (?) "This person has not shared contact details with you"
    Follow the latest Skype Community News
    ↓ Did my reply answer your question? Accept it as a solution to help others, Thanks. ↓

  • How are people sending me msgs when not on my cont...

    i'm getting tons of msgs from people i don't know, but my preferences state only people on my contact list.. /? how is this happening and how do i prevent it?

    Hello WesternElectricBen,
    Thank you for using Apple Support Communities.
    For more information, take a look at:
    iOS: Deactivating iMessage
    http://support.apple.com/kb/ts5185
    To deregister your phone number, tap Settings > Messages and turn iMessage off.
    If you can't deactivate iMessage after you perform the steps above or you can't access the iPhone, please contact Apple Support.
    Have a nice day,
    Mario

  • How are people using ZFS?

    I made the switch from an mdadm controlled RAID5 to ZFS.  I am curious how others are using ZFS.  I watch Ben Rockwell's talk on ZFS[1,2] and am finding that I am not using most of the advanced features it offers.  It got me wondering how others are using it.
    My setup: 3 HDDs in a RAIDZ1 in a dedicated box.  I am not using snapshots, or other advanced features.  I literally have all 3 drives mounted to /mnt/zpool and that's it.
    How I use it: I boot up the NAS once or twice a week and run shell script that uses rsync to move over pics, videos, files, etc.
    I guess I could create a vdev under my zpool specifically for documents, and enable snapshots for just that part of the zpool.  The majority of my content is user generated images which will not change.
    1. http://www.youtube.com/watch?v=3-KesLwobps
    2. http://www.youtube.com/watch?v=jDLJJ2-ZTq8
    Last edited by graysky (2013-10-18 15:34:55)

    I use ZFS on a FreeBSD file server using 3 mirror pairs.  I decided to use mirroring instead of raidz because drives are cheap, you get better read performance, and the zpool grows easily over time when failed devices are replaced with larger ones or extending with more pairs.  I also use snapshots and ZFS send/receive for incremental backups over the network.

  • How are people buying the iPhone 5 in bulk?

    There was a guy in line next to my friend at the Aplle store handing out tons of cash for people to buy him a second iPhone.  He handed each person $800 to buy him one.  I though hmmm how could this possibly work?  My buddy got a new iPhone 5 while I'm happy with my 4 and not ready to upgrade but I thought free money, who could turn that down.  I got two cards from the Apple rep (Apparently you had to have a card to be guaranteed a phone) and told the guy give me $1600 I'll get you two.  Well when the Apple rep handed me the two phones he said each has to be tired to a line and my current phone will automatically be diasbled as soon as I buy the 5.  Well that wasn't going to happen so I told the money man I wasn't interested.  Apparently he got about 5 phones and each person got $800.  How did this work?  As far as I can think, the person who took the guy's money now has a phone in their nane that for $800 they handed to some dude who will probably put them on eBay.  Thankfully I was smart enough not to partake.

    Here's the deal, if you purchase your phone in Malaysia, your warranty/support will only be valid there. Any issues, & you'll have to physically return the phone to Malaysia for all warranty/support issues...you can't mail it back.
    Is that worth saving a hundred bucks? Might want to think about that.

  • How do i perform a scan for music

    Woke up and itunes changed - musics gone - playlists gone and can't get it off my iPhone. Help?

    You don't. There are no virus scanners because there are no viruses that can affect an unmodified iPad.
    The iPad is not a virus prone Windows PC, so doesn't suffer the same daily problems that Windows does.

  • How are people signing their Android Apps for Google Play?

    What is common practice for signing Android Apps, is self signing acceptable? If not, what certificate authorities are popular for Adobe AIR Apps?
    Thanks

    No, because you enter your publisher details in the certificate. As far as I can tell the user just has the one dialog where they have to give permissions.

  • How are people tagged manually with Pse11?

    I can open the people tag panel and select photos, but can not tag them.
    Lascar

    Select View>Show People in Tag panel. This makes the people tags appear in tag panel. now you can create and drag these over images like any other normal tags.
    Let me know if that helps!
    Regards,
    vaishali

Maybe you are looking for