Dollars BBS | Suggestions

feed-icon

Main

Introductions

Countries

Missions

Suggestions

News

Animation

Art

Comics

Films

Food

Games

Literature

Music

Personal

Sports

Technology

Random

Logout (16)

1 Name: Zonnoser : 2014-10-24 16:21 ID:++wYREqJ [Del]

I have a suggestion and that suggestion is a logout button to go back to the page before it is not needed but I think it would be really cool and support the overall feel of the site

2 Name: Thiamor !ZPE1Q6VxaY : 2014-10-24 17:22 ID:NFMubv85 [Del]

I do kind of like the idea, being able to go BACK into the password home screen.

3 Name: BarabiSama !lmBitchbiw : 2014-10-24 23:54 ID:ZHtEt21w [Del]

.....?

All you have to do is go straight to www.dollars-bbs.org. It doesn't redirect you to Main even if you put the password in previously.

And you can just delete the password cookie or close out of your browser to "log out".

4 Name: BarabiSama !lmBitchbiw : 2014-10-24 23:54 ID:ZHtEt21w [Del]

login cookie* derp

5 Name: Equinox !PARADoXAVQ : 2014-10-25 00:12 ID:dq/Eq0+6 [Del]

>>3 This..
In my opinion, having a log out button is as useless as having the member counter.
also
nice tripcode barabi.

6 Name: BarabiSama !lmBitchbiw : 2014-10-25 02:42 ID:ZHtEt21w [Del]

>>5 Thanks bae ♥

7 Name: Inuhakka !inb4CaTsQw : 2014-10-26 11:56 ID:lCWftZeg [Del]

>>3
>just delete the password cookie or close out of your browser

Both of these are very inconvenient to do. The idea of a log out button would be to make things more convenient, like every other function of this site.

However, I see no need for this since we don't have accounts.

8 Name: BarabiSama !lmBitchbiw : 2014-10-27 13:14 ID:ZHtEt21w [Del]

>>7 But what is it making more convenient? For what reason would you need to log out in the middle of a browser section?

9 Name: Inuhakka !inb4CaTsQw : 2014-10-27 14:41 ID:tD/X0eQk [Del]

>>8 It is making logging out, a process that is now inconvenient, extremely convenient.

I thought of a potential reason after I experienced it myself: we can protect ourselves against CRSF attacks or other exploits that involve using the site's trust of your browser. It's the same reason you never ever leave your banking website open and logged in while surfing the Internet (the same should apply for email, but I know no one really cares about that). I think it would probably be a better idea to patch those holes rather than just work around them. Also, the only information that's really important that you could get is IP address or something. I guess you could possibly impersonate someone, but the likelyhood of someone caring enough to write something to do that and having the knowledge to do so is low.

10 Name: Thiamor !ZPE1Q6VxaY : 2014-10-27 16:10 ID:NFMubv85 [Del]

>>9
One thing that can happen in a log-out scenario is it deletes all cookies from the site and refreshes the page. If I am thinking correctly, than all it'd do is take you RIGHT back to the log in page.

11 Name: BarabiSama !lmBitchbiw : 2014-10-27 16:26 ID:ZHtEt21w [Del]

>>9 Can you translate that to English? I've got an idea of what you're saying, but I'm still not seeing how it'd do anything for the average user .-.

12 Name: Inuhakka !inb4CaTsQw : 2014-10-27 20:30 ID:OSUse4Xz [Del]

>>11 I'm sorry, that was ramble.

In short, there are attacks people can use by using the fact that you are logged in, which doesn't just apply to this site. They can send commands coming from your 'account' (eg, post x text with y name in z thread) without you knowing, if you are still logged in. This can happen with banking, too. They can send commands like 'transfer-money-to-switzerland' or something if you remain logged in and visit an attacker's webpage or somehow run the attacker's PHP code. So, logging out does not let them do that.

This can affect every average user, however it is unlikely someone will write code to somehow take advantage of that (unless they are Xephlrek) and start posting random garbage under your name or with your IP address in plain text (I don't even know if they can use your tripcode, I assume they could).

Anyone could get attacked, but it's not likely someone would attack. It would be better to change the site so you can't attack a user rather than offer the option of logging out.

13 Name: dankmastershitfacedniggerfuck : 2014-10-28 07:12 ID:Smi3d79K [Del]

>>12 im sorry

14 Name: BarabiSama !lmBitchbiw : 2014-10-28 16:09 ID:ZHtEt21w [Del]

>>12 Okay, that makes more sense :o

I wouldn't be against it. But where would it be?

And mod, it'd be super nice if this could be unpermasaged so we can discuss it for a bit longer :O

15 Name: BarabiSama !lmBitchbiw : 2014-10-29 11:39 ID:ZHtEt21w [Del]

ty ty~

16 Name: OroseC : 2014-10-30 21:06 ID:e6lS0LEX [Del]

It would be kind of cool but would it really be worth the website makers time to add something so useless? Just don't be lazy and clear your cookies