November 27th, 2006

02:17 pm - A simplest and effective way to stop spam :)
No captcha, no complex verification, etc. Just enable "multipart/form-data" enctype in posting form and do a check for this content type in your posting handler.

[code removed because it really works] :)

(1 comment | Leave a comment)


Date:December 4th, 2006 05:17 am (UTC)
My templates all have a {S_FORM_ENCTYPE} in them, which is equal to $form_enctype.

However, there is nothing in posting.php to kick people out if the form is the wrong encoding type.

Is it safe to replace all the instances of {S_FORM_ENCTYPE) (or atleast the one in posting_body.tpl with enctype="multipart/form-data", or should I alter your suggestion for posting.php to someone check against {S_FORM_ENCTYPE) or $form_enctype?

